ZeroHour

CVE-2017-6966

PoC
CVSS 3.0
5.5 medium
EPSS
1%p62
Published
()
Modified
Description

readelf in GNU Binutils 2.28 has a use-after-free (specifically read-after-free) error while processing multiple, relocated sections in an MSP430 binary. This is caused by mishandling of an invalid symbol index, and mishandling of state across invocations.

Vendors
gnu
Products
binutils
Weakness
CWE-416
Vector
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.