CVE Database
/

CVE-2017-9955

Back to search

CVE-2017-9955

Published: Jun 26, 2017

Modified: Aug 5, 2024

PUBLISHED

Description

The get_build_id function in opncls.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted file in which a certain size field is larger than a corresponding data field, as demonstrated by mishandling within the objdump program.

VendorProductVersions

n/a

n/a

affected
n/a

References

99573
vdb-entry
x_refsource_BID

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now