Lucene search

K
prionPRIOn knowledge basePRION:CVE-2017-14974
HistoryOct 02, 2017 - 1:29 a.m.

Null pointer dereference

2017-10-0201:29:00
PRIOn knowledge base
www.prio-n.com
3

6.7 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

31.0%

The *_get_synthetic_symtab functions in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, mishandle the failure of a certain canonicalization step, which allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted ELF file, related to elf32-i386.c and elf64-x86-64.c.

CPENameOperatorVersion
binutilseq2.29

6.7 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

31.0%