VDB
CVE-2020-19726
CVE-2020-19726
PUBLISHED
CVSS 8.800000190734863 HIGH
An issue was discovered in binutils libbfd.c 2.36 relating to the auxiliary symbol data allows attackers to read or write to system memory or cause a denial of service.
EPSS 0.75% · 53.0th percentile
Risk Scores
CVSS 3.1
8.800000190734863
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score
0.75%
53.0th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ubuntu:Pro:18.04:LTS | binutils | 2.30-21ubuntu1~18.04.1, 2.30-21ubuntu1~18.04.2, 2.30-21ubuntu1~18.04.4 |
| Ubuntu:Pro:14.04:LTS | binutils | 2.24-5ubuntu1, 2.24-5ubuntu13, 2.24-5ubuntu14 |
| Ubuntu:Pro:16.04:LTS | binutils | 2.25.51.20151106-0ubuntu1, 2.25.1-6ubuntu1, 2.25.51.20151022-0ubuntu3 |
| Ubuntu:20.04:LTS | binutils | 2.34-6ubuntu1.3, 0, 2.34-6ubuntu1.5 |
Timeline
- Aug 22, 2023 CVE Published
- Aug 23, 2023 EPSS Score
- Sep 25, 2023 EPSS Score
- Oct 29, 2023 EPSS Score
- Dec 1, 2023 EPSS Score
- Jan 4, 2024 EPSS Score
- Feb 6, 2024 EPSS Score
- Mar 11, 2024 EPSS Score
- Apr 13, 2024 EPSS Score
- May 17, 2024 EPSS Score
- Jun 19, 2024 EPSS Score
- Jul 23, 2024 EPSS Score
References
- https://ubuntu.com/security/CVE-2020-19726 third-party-advisory
- https://sourceware.org/bugzilla/show_bug.cgi?id=26241 third-party-advisory
- https://sourceware.org/bugzilla/show_bug.cgi?id=26240 third-party-advisory
- https://ubuntu.com/security/notices/USN-6381-1 vendor-advisory
- https://ubuntu.com/security/notices/USN-6544-1 vendor-advisory
- https://www.cve.org/CVERecord?id=CVE-2020-19726 third-party-advisory