cbcvebase.
CVE-2022-47673
published 2023-08-22

CVE-2022-47673: An issue was discovered in Binutils addr2line before 2.39.3, function parse_module contains multiple out of bound reads which may cause a denial of service or…

high7.8CVSS 3.1
AVLACLPRNUIRSUCHIHAH
An issue was discovered in Binutils addr2line before 2.39.3, function parse_module contains multiple out of bound reads which may cause a denial of service or other unspecified impacts.

Affected

7 ranges
VendorProductVersion rangeFixed in
debianbinutils< binutils 2.39.50.20221224-1 (bookworm)binutils 2.39.50.20221224-1 (bookworm)
gnubinutils< 2.39.32.39.3
gnubinutils>= 0 < 2.39.50.20221224-12.39.50.20221224-1
gnubinutils>= 0 < 2.39.50.20221224-12.39.50.20221224-1
gnubinutils>= 0 < 2.39.50.20221224-12.39.50.20221224-1
msrcazl3_crash_8.0.4-3_on_azure_linux_3.0
msrcazl3_crash_8.0.4-4_on_azure_linux_3.0

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
osv7.8HIGH