CVE-2017-8396

The Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, is vulnerable to an invalid read of size 1 because the existing reloc offset range tests didn't catch small negative offsets less than the size of the reloc field. This vulnerability causes programs that conduct an analysis of binary programs using the libbfd library, such as objdump, to crash.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:gnu:binutils:2.28:*:*:*:*:*:*:*

History

No history.

Information

Published : 2017-05-01 18:59

Updated : 2023-12-10 12:01


NVD link : CVE-2017-8396

Mitre link : CVE-2017-8396

CVE.ORG link : CVE-2017-8396


JSON object : View

Products Affected

gnu

  • binutils
CWE
CWE-20

Improper Input Validation