The vendor explicitly states that these products are not affected by this CVE.
- openshift-migration-must-gather-container as a component of Migration Toolkit for Containers
- mtv-must-gather-container as a component of Migration Toolkit for Virtualization
- oadp-mustgather-container as a component of OpenShift API for Data Protection
- binutils-devel as a component of Red Hat Enterprise Linux 6
- binutils.src as a component of Red Hat Enterprise Linux 6
- binutils as a component of Red Hat Enterprise Linux 7
- binutils-devel as a component of Red Hat Enterprise Linux 7
- binutils.src as a component of Red Hat Enterprise Linux 7
- gdb-doc as a component of Red Hat Enterprise Linux 7
- gdb-gdbserver as a component of Red Hat Enterprise Linux 7
- gdb.src as a component of Red Hat Enterprise Linux 7
- binutils as a component of Red Hat Enterprise Linux 8
- Summary
- A buffer overflow vulnerability exists in GNU Binutils’ objdump utility when processing tekhex format files. During format identification, the vulnerability occurs in the Binary File Descriptor (BFD) library’s tekhex parser. A specially crafted tekhex file, when processed by objdump, may trigger an out-of-bounds read, leading to a denial of service or other undefined behavior.
- Remediation
- No remediation text is recorded.
