CVE-2020-35448
published 2020-12-27CVE-2020-35448: An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.35.1. A heap-based buffer over-read can…
PriorityP411low3.3CVSS 3.1
AVLACLPRNUIRSUCLINAN
EPSS
1.27%
66.9th percentile
An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.35.1. A heap-based buffer over-read can occur in bfd_getl_signed_32 in libbfd.c because sh_entsize is not validated in _bfd_elf_slurp_secondary_reloc_section in elf.c.
Affected
5 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | binutils | < binutils 2.37-3 (bookworm) | binutils 2.37-3 (bookworm) |
| gnu | binutils | — | — |
| gnu | binutils | >= 0 < 2.37-3 | 2.37-3 |
| gnu | binutils | >= 0 < 2.37-3 | 2.37-3 |
| gnu | binutils | >= 0 < 2.37-3 | 2.37-3 |
CVSS provenance
nvdv3.13.3LOWCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:P/I:N/A:N
osv3.3LOW
vendor_debian3.3LOW
vendor_redhat3.3LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
binutils: Heap-based buffer overflow in bfd_getl_signed_32() in libbfd.c because sh_entsize is not validated in _bfd_elf_slurp_secondary_reloc_section() in elf.c
vendor_redhat·2020-09-04·CVSS 3.3
CVE-2020-35448 [LOW] CWE-119 binutils: Heap-based buffer overflow in bfd_getl_signed_32() in libbfd.c because sh_entsize is not validated in _bfd_elf_slurp_secondary_reloc_section() in elf.c
binutils: Heap-based buffer overflow in bfd_getl_signed_32() in libbfd.c because sh_entsize is not validated in _bfd_elf_slurp_secondary_reloc_section() in elf.c
An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.35.1. A heap-based buffer over-read can occur in bfd_getl_signed_32 in libbfd.c because sh_entsize is not validated in _bfd_elf_slurp_secondary_reloc_section in elf.c.
Package: binutils (Red Hat Enterprise Linux 6) - Out of support scope
Package: binutils (Red Hat Enterprise Linux 7) - Out of support scope
Package: gcc-toolset-10-binutils (Red Hat Enterprise Linux 8) - Fix deferred
Package: gcc-toolset-9-binutils (Red Hat Enterprise Linux 8) - Not affected
Package: binutils (Red Hat Enterprise Linux 9) - Not aff
Debian
CVE-2020-35448: binutils - An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd)...
vendor_debian·2020·CVSS 3.3
CVE-2020-35448 [LOW] CVE-2020-35448: binutils - An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd)...
An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.35.1. A heap-based buffer over-read can occur in bfd_getl_signed_32 in libbfd.c because sh_entsize is not validated in _bfd_elf_slurp_secondary_reloc_section in elf.c.
Scope: local
bookworm: resolved (fixed in 2.37-3)
bullseye: open
forky: resolved (fixed in 2.37-3)
sid: resolved (fixed in 2.37-3)
trixie: resolved (fixed in 2.37-3)
GHSA
GHSA-r2cj-jqqc-j833: An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2
ghsa_unreviewed·2022-05-24
CVE-2020-35448 [HIGH] CWE-125 GHSA-r2cj-jqqc-j833: An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2
An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.35.1. A heap-based buffer over-read can occur in bfd_getl_signed_32 in libbfd.c because sh_entsize is not validated in _bfd_elf_slurp_secondary_reloc_section in elf.c.
OSV
CVE-2020-35448: An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2
osv·2020-12-27·CVSS 3.3
CVE-2020-35448 [LOW] CVE-2020-35448: An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2
An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.35.1. A heap-based buffer over-read can occur in bfd_getl_signed_32 in libbfd.c because sh_entsize is not validated in _bfd_elf_slurp_secondary_reloc_section in elf.c.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://security.gentoo.org/glsa/202107-24https://security.netapp.com/advisory/ntap-20210129-0008/https://sourceware.org/bugzilla/show_bug.cgi?id=26574https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git%3Bh=8642dafaef21aa6747cec01df1977e9c52eb4679https://security.gentoo.org/glsa/202107-24https://security.netapp.com/advisory/ntap-20210129-0008/https://sourceware.org/bugzilla/show_bug.cgi?id=26574https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git%3Bh=8642dafaef21aa6747cec01df1977e9c52eb4679
2020-12-27
Published