Integer overflow in Binutils - CVE-2017-14333
Published: September 12, 2017 / Updated: February 10, 2022
Binutils
Detailed vulnerability description
The vulnerability allows a remote attacker to compromise vulnerable system.
The vulnerability exists in readelf.c within the process_version_sections function. A remote attacker can trigger integer overflow due to of a time-consuming loop) or possibly have unspecified other impact via a crafted binary file with invalid values of ent.vn_next, during "readelf -a" execution.