ALPINE-CVE-2023-1972 PUBLISHED CVSS 6.5 MEDIUM

A potential heap based buffer overflow was found in _bfd_elf_slurp_version_tables() in bfd/elf.c. This may lead to loss of availability.

Risk Scores

CVSS v3.1
6.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

Affected Products

VendorProductVersions
Alpine:v3.20binutils2.34-r1, 2.40-r9, 2.40-r8
Alpine:v3.23binutils0, 2.40-r9, 2.40-r8
Alpine:v3.21binutils2.28-r0, 0, 2.20.51.0.12-r0
Alpine:v3.18binutils2.40-r6, 2.40-r5, 2.40-r4
Alpine:v3.19binutils0, 2.28-r2, 2.40-r9
Alpine:v3.22binutils0, 2.20.51.0.12-r0, 2.20.51.0.4-r1

Timeline

References

Open in Interactive Console →