CVE-2020-35493 REJECTED

A flaw exists in binutils in bfd/pef.c. An attacker who is able to submit a crafted PEF file to be parsed by objdump could cause a heap buffer overflow -> out-of-bounds read that could lead to an impact to application availability. This flaw affects binutils versions prior to 2.34.

EPSS 0.23% · 45.3th percentile

Risk Scores

EPSS Score
0.23%
45.3th percentile

Affected Products

VendorProductVersions
Ubuntu:20.04:LTSbinutils0, 2.33-2ubuntu1, 2.33.1-5ubuntu1

Timeline

References

Open in Interactive Console →