CVE-2017-17125

Severity CVSS v4.0:
Pending analysis
Type:
CWE-125 Out-of-bounds Read
Publication date:
04/12/2017
Last modified:
20/04/2025

Description

nm.c and objdump.c in GNU Binutils 2.29.1 mishandle certain global symbols, which allows remote attackers to cause a denial of service (_bfd_elf_get_symbol_version_string buffer over-read and application crash) or possibly have unspecified other impact via a crafted ELF file.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:gnu:binutils:2.29.1:*:*:*:*:*:*:*