CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 5.5. See the original NVD description below for full technical details.
CVE
CVE-2017-8421
Severity
MEDIUM
CVSS
5.5
EPSS
0.96%
Original NVD Description
The function coff_set_alignment_hook in coffcode.h in Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, has a memory leak vulnerability which can cause memory exhaustion in objdump via a crafted PE file. Additional validation in dump_relocs_in_section in objdump.c can resolve this.
Related CVEs
Other vulnerabilities affecting the same vendor(s)