PT-2023-5195 · Gnu+4 · Binutils+4

Published

2023-08-22

·

Updated

2025-01-28

·

CVE-2022-47696

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Binutils versions prior to 2.39.3
Description The issue is related to the compare symbols() function in objdump.c and is caused by incorrect clearing or release of resources. This can be exploited by an attacker to cause a denial of service or other unspecified impacts.
Recommendations For versions prior to 2.39.3, update to version 2.39.3 or later to resolve the issue. As a temporary workaround, consider disabling the compare symbols() function until a patch is available.

Exploit

Fix

DoS

Improper Resource Release

Resource Exhaustion

Weakness Enumeration

Related Identifiers

ALT-PU-2024-9331
AZL-28503
AZL-28504
AZL-34635
BDU:2023-05799
CVE-2022-47696
OPENSUSE-SU-2023_3825-1
OPENSUSE-SU-2024:13411-1
ROSA-SA-2025-2645
SUSE-SU-2023:3695-1
SUSE-SU-2023:3825-1

Affected Products

Alt Linux
Astra Linux
Binutils
Debian
Suse