CLSA-2023-1696877581
Dashboard / Vulnerabilities / CLSA-2023-1696877581
CLSA-2023-1696877581
Summary: binutils: Fix of 9 CVEs
Details: - CVE-2017-16831: Fix excessive memory allocation attempts and possible integer overflows when attempting to read a COFF binary with a corrupt symbol count - CVE-2020-19726: Fix parsing a corrupt PE format file - CVE-2021-45078: Fix out-of-bounds write in stab_xcoff_builtin_type - CVE-2021-46174: Fix buffer overflow in read_section_stabs_debugging_info - CVE-2022-44840: Fix possible heap buffer overflow in find_section_in_set() in readelf.c - CVE-2022-45703: Combine sanity checks, calculate element counts, not word counts, fix typo - CVE-2022-47695: Test symbol flags to exclude section and synthetic symbols before attempting to check flavour - CVE-2022-47696: Fix uninitialised field `the_bfd` of `asymbol` - CVE-2022-47673: Fix lack of bounds checking in vms-alpha.c
Affected packages
Package
Name: binutils
Purl: pkg:rpm/tuxcare/binutils?distro=centos-7
Affected ranges
Type: ECOSYSTEM
Events:
