CVE-2017-8398 PUBLISHED

dwarf.c in GNU Binutils 2.28 is vulnerable to an invalid read of size 1 during dumping of debug information from a corrupt binary. This vulnerability causes programs that conduct an analysis of binary programs, such as objdump and readelf, to crash.

EPSS 0.41% · 60.8th percentile

Risk Scores

EPSS Score
0.41%
60.8th percentile

Affected Products

VendorProductVersions
Ubuntu:Pro:16.04:LTSbinutils2.25.90.20151211-0ubuntu1, 2.25.51.20151106-0ubuntu1, 2.25.51.20151113-1ubuntu1
Ubuntu:Pro:14.04:LTSbinutils2.23.90.20131017-1ubuntu1, 2.23.91.20131123-1ubuntu1, 2.24-1ubuntu2

Timeline

References

Open in Interactive Console →