#VU88550 Improper Initialization in Binutils - CVE-2020-35342
Published: April 16, 2024
Binutils
GNU
Description
The vulnerability allows a remote attacker to escalate privileges on the system.
The vulnerability exists due to GNU Binutils has an uninitialized-heap vulnerability in function tic4x_print_cond (file opcodes/tic4x-dis.c). A remote attacker can run a specially crafted application to execute arbitrary code with escalated privileges on the system.