CVE-2022-48064
22.08.2023, 19:16
GNU Binutils before 2.40 was discovered to contain an excessive memory consumption vulnerability via the function bfd_dwarf2_find_nearest_line_with_alt at dwarf2.c. The attacker could supply a crafted ELF file and cause a DNS attack.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| gnu | binutils | 𝑥 < 2.40 |
| netapp | ontap_select_deploy_administration_utility | - |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
openSUSE / SLES Releases
openSUSE Product | |||||||||||||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| binutils |
| ||||||||||||||||||||||||||||||||||||||||
| binutils-devel |
| ||||||||||||||||||||||||||||||||||||||||
| binutils-devel-32bit |
| ||||||||||||||||||||||||||||||||||||||||
| gdb |
| ||||||||||||||||||||||||||||||||||||||||
| gdbserver |
| ||||||||||||||||||||||||||||||||||||||||
| libctf-nobfd0 |
| ||||||||||||||||||||||||||||||||||||||||
| libctf0 |
|
Amazon Linux Releases
Amazon Package | |||||
|---|---|---|---|---|---|
| binutils |
| ||||
| binutils-debuginfo |
| ||||
| binutils-debugsource |
| ||||
| binutils-devel |
| ||||
| binutils-gprofng |
| ||||
| binutils-gprofng-debuginfo |
|
References