Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:28401
HistoryDec 06, 2020 - 4:26 a.m.

Arbitrary Code Execution

2020-12-0604:26:30
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
10
binutils
vulnerability
stack-based buffer overflow
ihex_scan
remote attackers
crash
application
host os
malicious ihex file

EPSS

0.009

Percentile

82.9%

binutils is vulnerable to arbitrary code execution. A stack-based buffer overflow in the ihex_scan function in bfd/ihex.c allows remote attackers to crash the application and potentially allow for arbitrary code execution on the host OS via a malicious ihex file.

References