vulnerability

Ubuntu: (Multiple Advisories) (CVE-2019-12972): GNU binutils vulnerabilities

Severity
4
CVSS
(AV:N/AC:M/Au:N/C:N/I:N/A:P)
Published
Jun 26, 2019
Added
Apr 23, 2020
Modified
Mar 27, 2026

Description

An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.32. There is a heap-based buffer over-read in _bfd_doprnt in bfd.c because elf_object_p in elfcode.h mishandles an e_shstrndx section of type SHT_GROUP by omitting a trailing '\0' character.

Solutions

ubuntu-pro-upgrade-binutilsubuntu-pro-upgrade-binutils-multiarch

References

    Title
    NEW

    Explore Exposure Command

    Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.