#VU8814 Heap-based buffer over-read in Binutils - CVE-2017-14939
Published: October 11, 2017 / Updated: September 14, 2018
Binutils
GNU
Description
The vulnerability exists in the decode_line_info in dwarf2.c source code and is due to improper memory allocation. A remote attacker can send a specially crafted ELF file, trigger heap-based buffer over-read and cause the application to crash.
Successful exploitation of the vulnerability results in denial of service.