CVE-2023-25588
published 2023-09-14CVE-2023-25588: A flaw was found in Binutils. The field `the_bfd` of `asymbol`struct is uninitialized in the `bfd_mach_o_get_synthetic_symtab` function, which may lead to an…
PriorityP413medium5.5CVSS 3.1
AVLACLPRNUIRSUCNINAH
EPSS
0.38%
30.1th percentile
A flaw was found in Binutils. The field `the_bfd` of `asymbol`struct is uninitialized in the `bfd_mach_o_get_synthetic_symtab` function, which may lead to an application crash and local denial of service.
Affected
11 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | binutils | < binutils 2.39.50.20221208-1 (bookworm) | binutils 2.39.50.20221208-1 (bookworm) |
| gnu | binutils | — | — |
| gnu | binutils | >= 0 < 2.39.50.20221208-1 | 2.39.50.20221208-1 |
| gnu | binutils | >= 0 < 2.39.50.20221208-1 | 2.39.50.20221208-1 |
| gnu | binutils | >= 0 < 2.39.50.20221208-1 | 2.39.50.20221208-1 |
| gnu | binutils | >= 0 < 2.30-21ubuntu1~18.04.9 | 2.30-21ubuntu1~18.04.9 |
| gnu | binutils | >= 0 < 2.34-6ubuntu1.5 | 2.34-6ubuntu1.5 |
| gnu | binutils | >= 0 < 2.38-4ubuntu2.2 | 2.38-4ubuntu2.2 |
| gnu | binutils | >= 0 < 2.24-5ubuntu14.2+esm1 | 2.24-5ubuntu14.2+esm1 |
| gnu | binutils | >= 0 < 2.26.1-1ubuntu1~16.04.8+esm6 | 2.26.1-1ubuntu1~16.04.8+esm6 |
| msrc | azl3_crash_8.0.4-3_on_azure_linux_3.0 | — | — |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
osv7.8HIGH
vendor_ubuntu7.8HIGH
vendor_debian4.7LOW
vendor_msrc4.7MEDIUM
vendor_redhat4.7MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-m5xq-q856-p5jf: A flaw was found in Binutils
ghsa_unreviewed·2023-09-14
CVE-2023-25588 [MEDIUM] CWE-908 GHSA-m5xq-q856-p5jf: A flaw was found in Binutils
A flaw was found in Binutils. The field `the_bfd` of `asymbol`struct is uninitialized in the `bfd_mach_o_get_synthetic_symtab` function, which may lead to an application crash and local denial of service.
OSV
CVE-2023-25588: A flaw was found in Binutils
osv·2023-09-14·CVSS 5.5
CVE-2023-25588 [MEDIUM] CVE-2023-25588: A flaw was found in Binutils
A flaw was found in Binutils. The field `the_bfd` of `asymbol`struct is uninitialized in the `bfd_mach_o_get_synthetic_symtab` function, which may lead to an application crash and local denial of service.
OSV
binutils vulnerabilities
osv·2023-05-24·CVSS 7.8
CVE-2023-1579 [HIGH] binutils vulnerabilities
binutils vulnerabilities
It was discovered that GNU binutils incorrectly handled certain DWARF
files. An attacker could possibly use this issue to cause a crash or
execute arbitrary code. This issue only affected Ubuntu 22.10.
(CVE-2023-1579)
It was discovered that GNU binutils did not properly verify the version
definitions in zer0-lengthverdef table. An attacker could possibly use this
issue to cause a crash or execute arbitrary code. This issue only affected
Ubuntu 22.04 LTS, Ubuntu 22.10 and Ubuntu 23.04. (CVE-2023-1972)
It was discovered that GNU binutils did not properly validate the size of
length parameter in vms-alpha. An attacker could possibly use this issue to
cause a crash or access sensitive information. This issue only affected
Ubuntu 18.04 LTS, Ubuntu 20.04 LTS, Ubuntu 2
CISA ICS
Siemens SCALANCE XCM-/XRM-300
cisa_ics·2024-02-15
Siemens SCALANCE XCM-/XRM-300
ICS Advisory
##
Siemens SCALANCE XCM-/XRM-300
Release DateFebruary 15, 2024
Alert CodeICSA-24-046-11
As of January 10, 2023, CISA will no longer be updating ICS security advisories for Siemens product vulnerabilities beyond the initial advisory. For the most up-to-date information on vulnerabilities in this advisory, please see Siemens' ProductCERT Security Advisories (CERT Services | Services | Siemens Global).
View CSAF
## 1. EXECUTIVE SUMMARY
- CVSS v3 9.8
- ATTENTION: Exploitable remotely/low attack complexity
- Vendor: Siemens
- Equipment: SCALANCE XCM-/XRM-300
- Vulnerabilities: Out-of-bounds Write, Incorrect Type Conversion or Cast, Improper Verification of Cryptographic Signature, Improper Access Control, Improper Authentication, Missing Encryption
Microsoft
Field `the_bfd` of `asymbol` is uninitialized in function `bfd_mach_o_get_synthetic_symtab`
vendor_msrc·2023-09-12·CVSS 4.7
CVE-2023-25588 [MEDIUM] CWE-457 Field `the_bfd` of `asymbol` is uninitialized in function `bfd_mach_o_get_synthetic_symtab`
Field `the_bfd` of `asymbol` is uninitialized in function `bfd_mach_o_get_synthetic_symtab`
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is composed. Microsoft is committed to transparency in this work which is why we began publishing CSAF/VEX in October 2025. See this blog post for more information. If impact to additional products is identified, we will update the CVE to reflect this.
Mariner: Mariner
redhat: redhat
Customer Action Required: Yes
Remediation: CBL-Mari
Ubuntu
GNU binutils vulnerabilities
vendor_ubuntu·2023-05-24·CVSS 7.8
CVE-2023-1972 [HIGH] GNU binutils vulnerabilities
Title: GNU binutils vulnerabilities
Summary: Several security issues were fixed in GNU binutils.
It was discovered that GNU binutils incorrectly handled certain DWARF
files. An attacker could possibly use this issue to cause a crash or
execute arbitrary code. This issue only affected Ubuntu 22.10.
(CVE-2023-1579)
It was discovered that GNU binutils did not properly verify the version
definitions in zer0-lengthverdef table. An attacker could possibly use this
issue to cause a crash or execute arbitrary code. This issue only affected
Ubuntu 22.04 LTS, Ubuntu 22.10 and Ubuntu 23.04. (CVE-2023-1972)
It was discovered that GNU binutils did not properly validate the size of
length parameter in vms-alpha. An attacker could possibly use this issue to
cause a crash or access sensitive informati
Debian
CVE-2023-25588: binutils - A flaw was found in Binutils. The field `the_bfd` of `asymbol`struct is uninitia...
vendor_debian·2023·CVSS 4.7
CVE-2023-25588 [MEDIUM] CVE-2023-25588: binutils - A flaw was found in Binutils. The field `the_bfd` of `asymbol`struct is uninitia...
A flaw was found in Binutils. The field `the_bfd` of `asymbol`struct is uninitialized in the `bfd_mach_o_get_synthetic_symtab` function, which may lead to an application crash and local denial of service.
Scope: local
bookworm: resolved (fixed in 2.39.50.20221208-1)
bullseye: open
forky: resolved (fixed in 2.39.50.20221208-1)
sid: resolved (fixed in 2.39.50.20221208-1)
trixie: resolved (fixed in 2.39.50.20221208-1)
Red Hat
binutils: Field `the_bfd` of `asymbol` is uninitialized in function `bfd_mach_o_get_synthetic_symtab`
vendor_redhat·2022-12-12·CVSS 4.7
CVE-2023-25588 [MEDIUM] CWE-457 binutils: Field `the_bfd` of `asymbol` is uninitialized in function `bfd_mach_o_get_synthetic_symtab`
binutils: Field `the_bfd` of `asymbol` is uninitialized in function `bfd_mach_o_get_synthetic_symtab`
A flaw was found in Binutils. The field `the_bfd` of `asymbol`struct is uninitialized in the `bfd_mach_o_get_synthetic_symtab` function, which may lead to an application crash and local denial of service.
A flaw was found in Binutils. The field `the_bfd` of `asymbol`struct is uninitialized in the `bfd_mach_o_get_synthetic_symtab` function, which may lead to an application crash and local denial of service.
Statement: This issue is classified with a low severity primarily because binutils is not typically exposed to untrusted inputs in most environments, limiting the possibility of exploitation. Additionally, this out-of-bounds read is only triggered during the parsing of a specially cra
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2023-25588 binutils: Field `the_bfd` of `asymbol` is uninitialized in function `bfd_mach_o_get_synthetic_symtab`
bugzilla·2023-02-06·CVSS 5.5
CVE-2023-25588 [MEDIUM] CVE-2023-25588 binutils: Field `the_bfd` of `asymbol` is uninitialized in function `bfd_mach_o_get_synthetic_symtab`
CVE-2023-25588 binutils: Field `the_bfd` of `asymbol` is uninitialized in function `bfd_mach_o_get_synthetic_symtab`
In Binutils, the field `the_bfd` of `asymbol` is uninitialized in function `bfd_mach_o_get_synthetic_symtab`.
Upstream bug:
https://sourceware.org/bugzilla/show_bug.cgi?id=29677
Upstream fix:
https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=d12f8998d2d086f0a6606589e5aedb7147e6f2f1
Discussion:
This bug only affects binutils versions that have been configured to support the Mach-O file format. This is not the case on binutils builds for Fedora or RHEL-9 and only affects the binutils builds for the s390x target on RHEL 8/7/6. See BZ 2167467 for more details on why bugs in Mach-O support is restricted to these releases.
---
This does not affect gdb in RHEL or
Bugzilla
binutils: NULL pointer segmentation fault when accessing field `the_bfd` in function `compare_symbols`
bugzilla·2023-02-06·CVSS 7.1
CVE-2023-25584 [HIGH] binutils: NULL pointer segmentation fault when accessing field `the_bfd` in function `compare_symbols`
binutils: NULL pointer segmentation fault when accessing field `the_bfd` in function `compare_symbols`
In Binutils, there is a NULL pointer segmentation fault when accessing field `the_bfd` in function `compare_symbols`.
Upstream bug:
https://sourceware.org/bugzilla/show_bug.cgi?id=29846
Upstream fix:
https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=3d3af4ba39e892b1c544d667ca241846bc3df386
Discussion:
Created binutils tracking bugs for this issue:
Affects: fedora-36 [bug 2174106]
Affects: fedora-37 [bug 2174108]
Affects: fedora-all [bug 2174098]
Created gdb tracking bugs for this issue:
Affects: fedora-36 [bug 2174107]
Created insight tracking bugs for this issue:
Affects: fedora-36 [bug 2174103]
Affects: fedora-37 [bug 2174109]
Created mingw-binutils tracking bug
arXiv
Toward Unbiased Multiple-Target Fuzzing with Path Diversity
arxiv_fulltext·2024-06-06
Toward Unbiased Multiple-Target Fuzzing with Path Diversity
Toward Unbiased Multiple-Target Fuzzing with Path Diversity
Huanyao Rong
Indiana University Bloomington
Wei You Corresponding author.
3.6mmRenmin University of China3.6mm
XiaoFeng Wang
Indiana University Bloomington
Tiaohao Mao
Indiana University Bloomington
## Abstract
Directed fuzzing is an advanced software testing approach that systematically guides the fuzzing campaign toward user-defined target sites, enabling efficient discovery of vulnerabilities related to these sites.
However, we have observed that some complex vulnerabilities remain undetected by directed fuzzers even when the flawed target sites are frequently tested by the generated test cases, because triggering these bugs often requires the execution of additional code in related program locations.
Furthermore, whe
https://access.redhat.com/security/cve/CVE-2023-25588https://bugzilla.redhat.com/show_bug.cgi?id=2167505https://security.netapp.com/advisory/ntap-20231103-0003/https://sourceware.org/bugzilla/show_bug.cgi?id=29677https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=d12f8998d2d086f0a6606589e5aedb7147e6f2f1https://access.redhat.com/security/cve/CVE-2023-25588https://bugzilla.redhat.com/show_bug.cgi?id=2167505https://security.netapp.com/advisory/ntap-20231103-0003/https://sourceware.org/bugzilla/show_bug.cgi?id=29677https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=d12f8998d2d086f0a6606589e5aedb7147e6f2f1
2023-09-14
Published