Vulnerabilities > CVE-2020-35507 - NULL Pointer Dereference vulnerability in multiple products

047910
CVSS 5.5 - MEDIUM
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
HIGH

Summary

There's a flaw in bfd_pef_parse_function_stubs of bfd/pef.c in binutils in versions prior to 2.34 which could allow an attacker who is able to submit a crafted file to be processed by objdump to cause a NULL pointer dereference. The greatest threat of this flaw is to application availability.

Vulnerable Configurations

Part Description Count
Application
Gnu
61
Application
Netapp
4
OS
Redhat
1
OS
Netapp
1
OS
Broadcom
1
Hardware
Netapp
1

Common Weakness Enumeration (CWE)