CVE-2017-15996

elfcomm.c in readelf in GNU Binutils 2.29 allows remote attackers to cause a denial of service (excessive memory allocation) or possibly have unspecified other impact via a crafted ELF file that triggers a "buffer overflow on fuzzed archive header," related to an uninitialized variable, an improper conditional jump, and the get_archive_member_name, process_archive_index_and_symbols, and setup_archive functions.
Configurations

Configuration 1 (hide)

cpe:2.3:a:gnu:binutils:2.29:*:*:*:*:*:*:*

History

No history.

Information

Published : 2017-10-29 17:29

Updated : 2024-02-04 19:29


NVD link : CVE-2017-15996

Mitre link : CVE-2017-15996

CVE.ORG link : CVE-2017-15996


JSON object : View

Products Affected

gnu

  • binutils
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer