PT-2017-17647 · Gnu+2 · Gnu Binutils+2

Marcel Böhme

+1

·

Publicado

2017-03-29

·

Atualizado

2024-06-15

·

CVE-2017-7301

CVSS v3.1

7.5

Alta

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions GNU Binutils version 2.28
Description The Binary File Descriptor library has an off-by-one vulnerability in the aout link add symbols function due to insufficient string offset checking. This issue could cause the GNU linker program to crash.
Recommendations For GNU Binutils version 2.28, consider updating to a newer version that addresses this issue, as the current version may cause the GNU linker program to crash due to the off-by-one vulnerability in the aout link add symbols function.

Correção

RCE

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2017-7301
MGASA-2019-0169
OPENSUSE-SU-2018_3223-1
OPENSUSE-SU-2024:10651-1
SUSE-SU-2017:3170-1
SUSE-SU-2018:3207-1
SUSE-SU-2018:3207-2
USN-4336-2

Produtos afetados

Gnu Binutils
Suse
Ubuntu