Lucene search

K
osvGoogleOSV:CVE-2019-12972
HistoryJun 26, 2019 - 2:15 p.m.

CVE-2019-12972

2019-06-2614:15:10
Google
osv.dev
7

6.7 Medium

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

29.6%

An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.32. There is a heap-based buffer over-read in _bfd_doprnt in bfd.c because elf_object_p in elfcode.h mishandles an e_shstrndx section of type SHT_GROUP by omitting a trailing ‘\0’ character.