Vulnerabilities > CVE-2020-35493

047910
CVSS 5.5 - MEDIUM
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
HIGH

Summary

A flaw exists in binutils in bfd/pef.c. An attacker who is able to submit a crafted PEF file to be parsed by objdump could cause a heap buffer overflow -> out-of-bounds read that could lead to an impact to application availability. This flaw affects binutils versions prior to 2.34.

Vulnerable Configurations

Part Description Count
Application
Gnu
61
Application
Netapp
4
OS
Fedoraproject
1
OS
Broadcom
1
OS
Netapp
1
Hardware
Netapp
1