CVE-2014-8502
Published: 9 December 2014
Heap-based buffer overflow in the pe_print_edata function in bfd/peXXigen.c in GNU binutils 2.24 and earlier allows remote attackers to cause a denial of service (crash) and possibly have other unspecified impact via a truncated export table in a PE file.
Priority
Status
Package | Release | Status |
---|---|---|
binutils Launchpad, Ubuntu, Debian |
lucid |
Released
(2.20.1-3ubuntu7.2)
|
precise |
Released
(2.22-6ubuntu1.2)
|
|
trusty |
Released
(2.24-5ubuntu3.1)
|
|
upstream |
Needs triage
|
|
utopic |
Released
(2.24.90.20141014-0ubuntu3.1)
|
|
Patches: upstream: https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=5a4b0ccc20ba30caef53b01bee2c0aaa5b855339 |