Out-of-bounds read in Binutils - CVE-2019-12972

 

Out-of-bounds read in Binutils - CVE-2019-12972

Published: July 2, 2019 / Updated: March 23, 2022


Vulnerability identifier: #VU18958
CSH Severity: Low
CVSS v4: 6.8 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2019-12972
CWE-ID: CWE-125
Exploitation vector: Local access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows an attacker to perform a denial of service (DoS) attack.

The vulnerability exists due to heap-based buffer over-read condition within the "_bfd_doprnt" function in the "bfd.c" file in the Binary File Descriptor (BFD) library. A local attacker can pass a malformed ELF binary to the affected application and perform a denial of service attack.


Affected software

Binutils
Gentoo Linux
SUSE OpenStack Cloud Crowbar
SUSE OpenStack Cloud
HPE Helion Openstack
SUSE Linux Enterprise Server
SUSE Linux Enterprise Server for SAP
SUSE Linux Enterprise Software Development Kit
Opensuse
IBM Cloud Pak for Security
binutils-gold
cross-spu-binutils-debugsource
cross-spu-binutils-debuginfo
cross-spu-binutils
cross-ppc-binutils-debugsource
cross-ppc-binutils-debuginfo
cross-ppc-binutils
binutils-gold-debuginfo
binutils
libctf0-debuginfo
libctf0
libctf-nobfd0-debuginfo
libctf-nobfd0
binutils-devel
binutils-debugsource
binutils-debuginfo

How to mitigate CVE-2019-12972

Install update from vendor's website.

Binutils - update to 2.33.1
IBM Cloud Pak for Security - update to 1.11.2.0
binutils-gold - update to 2.37-9.39.1
cross-spu-binutils-debugsource - update to 2.37-9.39.1
cross-spu-binutils-debuginfo - update to 2.37-9.39.1
cross-spu-binutils - update to 2.37-9.39.1
cross-ppc-binutils-debugsource - update to 2.37-9.39.1
cross-ppc-binutils-debuginfo - update to 2.37-9.39.1
cross-ppc-binutils - update to 2.37-9.39.1
binutils-gold-debuginfo - update to 2.37-9.39.1
binutils - update to 2.37-9.39.1
libctf0-debuginfo - update to 2.37-9.39.1
libctf0 - update to 2.37-9.39.1
libctf-nobfd0-debuginfo - update to 2.37-9.39.1
libctf-nobfd0 - update to 2.37-9.39.1
binutils-devel - update to 2.37-9.39.1
binutils-debugsource - update to 2.37-9.39.1
binutils-debuginfo - update to 2.37-9.39.1

External References

Related Security Bulletins