Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Pavel Mayorov

#32704of 53,633
7.8Total CVSS
Vulnerabilities · 1
PT-2021-6021
7.8
2021-12-15
Gnu · Gnu Binutils · CVE-2021-45078
**Name of the Vulnerable Software and Affected Versions** GNU Binutils versions through 2.37 **Description** The issue is related to a heap-based buffer overflow in the `stab xcoff builtin type` function in `stabs.c`, which can cause a denial of service or possibly have other unspecified impacts. This is due to an incorrect fix for a previous issue. An out-of-bounds write can occur, potentially allowing remote attackers to execute arbitrary code. **Recommendations** For GNU Binutils versions through 2.37, as a temporary workaround, consider disabling the `stab xcoff builtin type` function until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.