CVE-2017-12458 (NVD)

2017-08-04

The nlm_swap_auxiliary_headers_in function in bfd/nlmcode.h in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29 and earlier, allows remote attackers to cause an out of bounds heap read via a crafted nlm file.

Products Binutils
Type Out-of-bounds Read (CWE-125)
First patch - None (likely due to unavailable code)
Links https://sourceware.org/bugzilla/show_bug.cgi?id=21840