CVE-2022-47673
published 2023-08-22CVE-2022-47673: An issue was discovered in Binutils addr2line before 2.39.3, function parse_module contains multiple out of bound reads which may cause a denial of service or…
high7.8CVSS 3.1
AVLACLPRNUIRSUCHIHAH
An issue was discovered in Binutils addr2line before 2.39.3, function parse_module contains multiple out of bound reads which may cause a denial of service or other unspecified impacts.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | binutils | < binutils 2.39.50.20221224-1 (bookworm) | binutils 2.39.50.20221224-1 (bookworm) |
| gnu | binutils | < 2.39.3 | 2.39.3 |
| gnu | binutils | >= 0 < 2.39.50.20221224-1 | 2.39.50.20221224-1 |
| gnu | binutils | >= 0 < 2.39.50.20221224-1 | 2.39.50.20221224-1 |
| gnu | binutils | >= 0 < 2.39.50.20221224-1 | 2.39.50.20221224-1 |
| msrc | azl3_crash_8.0.4-3_on_azure_linux_3.0 | — | — |
| msrc | azl3_crash_8.0.4-4_on_azure_linux_3.0 | — | — |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
osv7.8HIGH