vulnerability

Huawei EulerOS: CVE-2017-15939: binutils security update

Severity
4
CVSS
(AV:N/AC:M/Au:N/C:N/I:N/A:P)
Published
Oct 27, 2017
Added
Nov 19, 2019
Modified
Aug 13, 2025

Description

dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, mishandles NULL files in a .debug_line file table, which allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted ELF file, related to concat_filename. NOTE: this issue is caused by an incomplete fix for CVE-2017-15023.

Solutions

huawei-euleros-2_0_sp5-upgrade-binutilshuawei-euleros-2_0_sp5-upgrade-binutils-devel
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.