Lucene search

K
cvelistMitreCVELIST:CVE-2020-35448
HistoryDec 27, 2020 - 3:38 a.m.

CVE-2020-35448

2020-12-2703:38:54
mitre
www.cve.org
2

5.2 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

40.7%

An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.35.1. A heap-based buffer over-read can occur in bfd_getl_signed_32 in libbfd.c because sh_entsize is not validated in _bfd_elf_slurp_secondary_reloc_section in elf.c.