Debian Binutils vulnerabilities
259 known vulnerabilities affecting debian/binutils.
Total CVEs
259
CISA KEV
0
Public exploits
12
Exploited in wild
0
Severity breakdown
CRITICAL3HIGH40MEDIUM23LOW193
Vulnerabilities
Page 5 of 13
CVE-2017-9751P4LOWCVSS 7.8fixed in binutils 2.29-1 (bookworm)2017
CVE-2017-9751 [HIGH] CVE-2017-9751: binutils - opcodes/rl78-decode.opc in GNU Binutils 2.28 has an unbounded GETBYTE macro, whi...
opcodes/rl78-decode.opc in GNU Binutils 2.28 has an unbounded GETBYTE macro, which allows remote attackers to cause a denial of service (buffer overflow and application crash) or possibly have unspecified other impact via a crafted binary file, as demonstrated by mishandling of this file during "objdump -D" execution.
Scope: local
bookworm: resolved (fixed in 2.29-1)
debian
CVE-2017-9753P4LOWCVSS 7.8fixed in binutils 2.29-1 (bookworm)2017
CVE-2017-9753 [HIGH] CVE-2017-9753: binutils - The versados_mkobject function in bfd/versados.c in the Binary File Descriptor (...
The versados_mkobject function in bfd/versados.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, does not initialize a certain data structure, which allows remote attackers to cause a denial of service (buffer overflow and application crash) or possibly have unspecified other impact via a crafted binary file, as demonstr
debian
CVE-2021-20197P4LOWCVSS 6.3fixed in binutils 2.37-3 (bookworm)2021
CVE-2021-20197 [MEDIUM] CVE-2021-20197: binutils - There is an open race window when writing output in the following utilities in G...
There is an open race window when writing output in the following utilities in GNU binutils version 2.35 and earlier:ar, objcopy, strip, ranlib. When these utilities are run as a privileged user (presumably as part of a script updating binaries across different users), an unprivileged user can trick these utilities into getting ownership of arbitrary files throug
debian
CVE-2017-13710P4HIGHCVSS 7.5fixed in binutils 2.29-9 (bookworm)2017
CVE-2017-13710 [HIGH] CVE-2017-13710: binutils - The setup_group function in elf.c in the Binary File Descriptor (BFD) library (a...
The setup_group function in elf.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a group section that is too small.
Scope: local
bookworm: resolved (fixed in 2.29-9)
bullseye: resolved (fixed in 2.29-9)
forky: res
debian
CVE-2017-16829P4LOWCVSS 7.8fixed in binutils 2.29.90.20180122-1 (bookworm)2017
CVE-2017-16829 [HIGH] CVE-2017-16829: binutils - The _bfd_elf_parse_gnu_properties function in elf-properties.c in the Binary Fil...
The _bfd_elf_parse_gnu_properties function in elf-properties.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29.1, does not prevent negative pointers, which allows remote attackers to cause a denial of service (out-of-bounds read and application crash) or possibly have unspecified other impact via a crafted ELF file.
Sco
debian
CVE-2017-16832P4LOWCVSS 7.8fixed in binutils 2.29.90.20180122-1 (bookworm)2017
CVE-2017-16832 [HIGH] CVE-2017-16832: binutils - The pe_bfd_read_buildid function in peicode.h in the Binary File Descriptor (BFD...
The pe_bfd_read_buildid function in peicode.h in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29.1, does not validate size and offset values in the data dictionary, which allows remote attackers to cause a denial of service (segmentation violation and application crash) or possibly have unspecified other impact via a craft
debian
CVE-2017-12454P4HIGHCVSS 7.8fixed in binutils 2.29-9 (bookworm)2017
CVE-2017-12454 [HIGH] CVE-2017-12454: binutils - The _bfd_vms_slurp_egsd function in bfd/vms-alpha.c in the Binary File Descripto...
The _bfd_vms_slurp_egsd function in bfd/vms-alpha.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29 and earlier, allows remote attackers to cause an arbitrary memory read via a crafted vms alpha file.
Scope: local
bookworm: resolved (fixed in 2.29-9)
bullseye: resolved (fixed in 2.29-9)
forky: resolved (fixed in 2.29-9)
debian
CVE-2017-9743P4LOWCVSS 7.8fixed in binutils 2.29-1 (bookworm)2017
CVE-2017-9743 [HIGH] CVE-2017-9743: binutils - The print_insn_score32 function in opcodes/score7-dis.c:552 in GNU Binutils 2.28...
The print_insn_score32 function in opcodes/score7-dis.c:552 in GNU Binutils 2.28 allows remote attackers to cause a denial of service (buffer overflow and application crash) or possibly have unspecified other impact via a crafted binary file, as demonstrated by mishandling of this file during "objdump -D" execution.
Scope: local
bookworm: resolved (fixed in 2.29-1)
b
debian
CVE-2017-9752P4LOWCVSS 7.8fixed in binutils 2.29-1 (bookworm)2017
CVE-2017-9752 [HIGH] CVE-2017-9752: binutils - bfd/vms-alpha.c in the Binary File Descriptor (BFD) library (aka libbfd), as dis...
bfd/vms-alpha.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, allows remote attackers to cause a denial of service (buffer overflow and application crash) or possibly have unspecified other impact via a crafted binary file, as demonstrated by mishandling of this file in the _bfd_vms_get_value and _bfd_vms_slurp_etir fu
debian
CVE-2017-9744P4LOWCVSS 7.8fixed in binutils 2.29-1 (bookworm)2017
CVE-2017-9744 [HIGH] CVE-2017-9744: binutils - The sh_elf_set_mach_from_flags function in bfd/elf32-sh.c in the Binary File Des...
The sh_elf_set_mach_from_flags function in bfd/elf32-sh.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, allows remote attackers to cause a denial of service (buffer overflow and application crash) or possibly have unspecified other impact via a crafted binary file, as demonstrated by mishandling of this file during "ob
debian
CVE-2017-9745P4LOWCVSS 7.8fixed in binutils 2.29-1 (bookworm)2017
CVE-2017-9745 [HIGH] CVE-2017-9745: binutils - The _bfd_vms_slurp_etir function in bfd/vms-alpha.c in the Binary File Descripto...
The _bfd_vms_slurp_etir function in bfd/vms-alpha.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, allows remote attackers to cause a denial of service (buffer overflow and application crash) or possibly have unspecified other impact via a crafted binary file, as demonstrated by mishandling of this file during "objdump
debian
CVE-2018-7208P4HIGHCVSS 7.8fixed in binutils 2.30-6 (bookworm)2018
CVE-2018-7208 [HIGH] CVE-2018-7208: binutils - In the coff_pointerize_aux function in coffgen.c in the Binary File Descriptor (...
In the coff_pointerize_aux function in coffgen.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.30, an index is not validated, which allows remote attackers to cause a denial of service (segmentation fault) or possibly have unspecified other impact via a crafted file, as demonstrated by objcopy of a COFF object.
Scope: loca
debian
CVE-2017-16827P4LOWCVSS 7.8fixed in binutils 2.29.90.20180122-1 (bookworm)2017
CVE-2017-16827 [HIGH] CVE-2017-16827: binutils - The aout_get_external_symbols function in aoutx.h in the Binary File Descriptor ...
The aout_get_external_symbols function in aoutx.h in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29.1, allows remote attackers to cause a denial of service (slurp_symtab invalid free and application crash) or possibly have unspecified other impact via a crafted ELF file.
Scope: local
bookworm: resolved (fixed in 2.29.90.2
debian
CVE-2017-17121P4LOWCVSS 7.8fixed in binutils 2.29.90.20180122-1 (bookworm)2017
CVE-2017-17121 [HIGH] CVE-2017-17121: binutils - The Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Bin...
The Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29.1, allows remote attackers to cause a denial of service (memory access violation) or possibly have unspecified other impact via a COFF binary in which a relocation refers to a location after the end of the to-be-relocated section.
Scope: local
bookworm: resolved (fixed in 2.2
debian
CVE-2017-12458P4HIGHCVSS 7.8fixed in binutils 2.29-8 (bookworm)2017
CVE-2017-12458 [HIGH] CVE-2017-12458: binutils - The nlm_swap_auxiliary_headers_in function in bfd/nlmcode.h in the Binary File D...
The nlm_swap_auxiliary_headers_in function in bfd/nlmcode.h in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29 and earlier, allows remote attackers to cause an out of bounds heap read via a crafted nlm file.
Scope: local
bookworm: resolved (fixed in 2.29-8)
bullseye: resolved (fixed in 2.29-8)
forky: resolved (fixed in 2.2
debian
CVE-2017-12452P4HIGHCVSS 7.8fixed in binutils 2.29-9 (bookworm)2017
CVE-2017-12452 [HIGH] CVE-2017-12452: binutils - The bfd_mach_o_i386_canonicalize_one_reloc function in bfd/mach-o-i386.c in the ...
The bfd_mach_o_i386_canonicalize_one_reloc function in bfd/mach-o-i386.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29 and earlier, allows remote attackers to cause an out of bounds heap read via a crafted mach-o file.
Scope: local
bookworm: resolved (fixed in 2.29-9)
bullseye: resolved (fixed in 2.29-9)
forky: resolv
debian
CVE-2017-12455P4HIGHCVSS 7.8fixed in binutils 2.29-8 (bookworm)2017
CVE-2017-12455 [HIGH] CVE-2017-12455: binutils - The evax_bfd_print_emh function in vms-alpha.c in the Binary File Descriptor (BF...
The evax_bfd_print_emh function in vms-alpha.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29 and earlier, allows remote attackers to cause an out of bounds heap read via a crafted vms alpha file.
Scope: local
bookworm: resolved (fixed in 2.29-8)
bullseye: resolved (fixed in 2.29-8)
forky: resolved (fixed in 2.29-8)
si
debian
CVE-2017-12453P4HIGHCVSS 7.8fixed in binutils 2.29-9 (bookworm)2017
CVE-2017-12453 [HIGH] CVE-2017-12453: binutils - The _bfd_vms_slurp_eeom function in libbfd.c in the Binary File Descriptor (BFD)...
The _bfd_vms_slurp_eeom function in libbfd.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29 and earlier, allows remote attackers to cause an out of bounds heap read via a crafted vms alpha file.
Scope: local
bookworm: resolved (fixed in 2.29-9)
bullseye: resolved (fixed in 2.29-9)
forky: resolved (fixed in 2.29-9)
sid:
debian
CVE-2017-12451P4HIGHCVSS 7.8fixed in binutils 2.29-9 (bookworm)2017
CVE-2017-12451 [HIGH] CVE-2017-12451: binutils - The _bfd_xcoff_read_ar_hdr function in bfd/coff-rs6000.c and bfd/coff64-rs6000.c...
The _bfd_xcoff_read_ar_hdr function in bfd/coff-rs6000.c and bfd/coff64-rs6000.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29 and earlier, allows remote attackers to cause an out of bounds stack read via a crafted COFF image file.
Scope: local
bookworm: resolved (fixed in 2.29-9)
bullseye: resolved (fixed in 2.29-9)
debian
CVE-2017-12457P4HIGHCVSS 7.8fixed in binutils 2.29-8 (bookworm)2017
CVE-2017-12457 [HIGH] CVE-2017-12457: binutils - The bfd_make_section_with_flags function in section.c in the Binary File Descrip...
The bfd_make_section_with_flags function in section.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29 and earlier, allows remote attackers to cause a NULL dereference via a crafted file.
Scope: local
bookworm: resolved (fixed in 2.29-8)
bullseye: resolved (fixed in 2.29-8)
forky: resolved (fixed in 2.29-8)
sid: resolved
debian