Description
GNU binutils gold gold v1.11-v1.16 (GNU binutils v2.21-v2.31.1) is affected by: Improper Input Validation, Signed/Unsigned Comparison, Out-of-bounds Read. The impact is: Denial of service. The component is: gold/fileread.cc:497, elfcpp/elfcpp_file.h:644. The attack vector is: An ELF file with an invalid e_shoff header field must be opened.
Published: 2019-07-23
Score: 5.5 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Analysis and contextual insights are available on OpenCVE Cloud.

Remediation

No vendor fix or workaround currently provided.

Additional remediation guidance may be available on OpenCVE Cloud.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2019-1947 GNU binutils gold gold v1.11-v1.16 (GNU binutils v2.21-v2.31.1) is affected by: Improper Input Validation, Signed/Unsigned Comparison, Out-of-bounds Read. The impact is: Denial of service. The component is: gold/fileread.cc:497, elfcpp/elfcpp_file.h:644. The attack vector is: An ELF file with an invalid e_shoff header field must be opened.
Ubuntu USN Ubuntu USN USN-5349-1 GNU binutils vulnerability
History

No history.

Subscriptions

Gnu Binutils Binutils Gold
Netapp Hci Management Node Solidfire
Redhat Enterprise Linux
cve-icon MITRE

Status: PUBLISHED

Assigner: dwf

Published:

Updated: 2024-08-05T03:07:18.485Z

Reserved: 2019-03-20T00:00:00.000Z

Link: CVE-2019-1010204

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2019-07-23T14:15:13.373

Modified: 2024-11-21T04:18:03.163

Link: CVE-2019-1010204

cve-icon Redhat

Severity : Low

Publid Date: 2019-07-24T00:00:00Z

Links: CVE-2019-1010204 - Bugzilla

cve-icon OpenCVE Enrichment

No data.

Weaknesses