VDB
CVE-2021-3549
CVE-2021-3549
PUBLISHED
CVSS 7.099999904632568 HIGH
An out of bounds flaw was found in GNU binutils objdump utility version 2.36. An attacker could use this flaw and pass a large section to avr_elf32_load_records_from_section() probably resulting in a crash or in some cases memory corruption. The highest threat from this vulnerability is to integrity as well as system availability.
EPSS 0.97% · 60.0th percentile
Risk Scores
CVSS 3.1
7.099999904632568
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:H
EPSS Score
0.97%
60.0th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ubuntu:22.04:LTS | binutils | 0 |
Timeline
- May 26, 2021 CVE Published
- May 27, 2021 EPSS Score
- Jul 30, 2021 EPSS Score
- Sep 29, 2021 EPSS Score
- Nov 30, 2021 EPSS Score
- Jan 30, 2022 EPSS Score
- Apr 1, 2022 EPSS Score
- Apr 2, 2022 EPSS Score
- Jun 2, 2022 EPSS Score
- Aug 4, 2022 EPSS Score
- Oct 4, 2022 EPSS Score
- Dec 5, 2022 EPSS Score
References
- https://ubuntu.com/security/CVE-2021-3549 third-party-advisory
- https://www.cve.org/CVERecord?id=CVE-2021-3549 third-party-advisory