vulnerability
Amazon Linux AMI 2: CVE-2017-12459: Security patch for binutils (ALAS-2019-1185)
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 7 | (AV:N/AC:M/Au:N/C:P/I:P/A:P) | Aug 4, 2017 | Apr 27, 2020 | Sep 30, 2022 |
Severity
7
CVSS
(AV:N/AC:M/Au:N/C:P/I:P/A:P)
Published
Aug 4, 2017
Added
Apr 27, 2020
Modified
Sep 30, 2022
Description
The bfd_mach_o_read_symtab_strtab function in bfd/mach-o.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29 and earlier, allows remote attackers to cause an out of bounds heap write and possibly achieve code execution via a crafted mach-o file.
Solutions
amazon-linux-ami-2-upgrade-binutilsamazon-linux-ami-2-upgrade-binutils-debuginfoamazon-linux-ami-2-upgrade-binutils-devel
Rapid7 Labs
2026 Global Threat Landscape Report
The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.