Show filters
6 Total Results
Displaying 1-6 of 6
Sort by:
Attacker Value
Unknown
CVE-2021-20284
Disclosure Date: March 26, 2021 (last updated February 22, 2025)
A flaw was found in GNU Binutils 2.35.1, where there is a heap-based buffer overflow in _bfd_elf_slurp_secondary_reloc_section in elf.c due to the number of symbols not calculated correctly. The highest threat from this vulnerability is to system availability.
0
Attacker Value
Unknown
CVE-2020-35448
Disclosure Date: December 27, 2020 (last updated February 22, 2025)
An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.35.1. A heap-based buffer over-read can occur in bfd_getl_signed_32 in libbfd.c because sh_entsize is not validated in _bfd_elf_slurp_secondary_reloc_section in elf.c.
0
Attacker Value
Unknown
CVE-2020-16590
Disclosure Date: December 09, 2020 (last updated February 22, 2025)
A double free vulnerability exists in the Binary File Descriptor (BFD) (aka libbrd) in GNU Binutils 2.35 in the process_symbol_table, as demonstrated in readelf, via a crafted file.
0
Attacker Value
Unknown
CVE-2020-16599
Disclosure Date: December 09, 2020 (last updated February 22, 2025)
A Null Pointer Dereference vulnerability exists in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.35, in _bfd_elf_get_symbol_version_string, as demonstrated in nm-new, that can cause a denial of service via a crafted file.
0
Attacker Value
Unknown
CVE-2020-16591
Disclosure Date: December 09, 2020 (last updated February 22, 2025)
A Denial of Service vulnerability exists in the Binary File Descriptor (BFD) in GNU Binutils 2.35 due to an invalid read in process_symbol_table, as demonstrated in readeif.
0
Attacker Value
Unknown
CVE-2020-16593
Disclosure Date: December 09, 2020 (last updated February 22, 2025)
A Null Pointer Dereference vulnerability exists in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.35, in scan_unit_for_symbols, as demonstrated in addr2line, that can cause a denial of service via a crafted file.
0