Wind River Support Network

HomeDefectsLIN1019-5854
Fixed

LIN1019-5854 : Security Advisory - binutils - CVE-2020-35494

Created: Jan 5, 2021    Updated: Apr 24, 2021
Resolved Date: Apr 24, 2021
Found In Version: 10.19.45.1
Severity: Standard
Applicable for: Wind River Linux LTS 19
Component/s: Userspace

Description

There's a flaw in binutils /opcodes/tic4x-dis.c. An attacker who is able to submit a crafted input file to be processed by binutils could cause usage of uninitialized memory. The highest threat is to application availability with a lower threat to data confidentiality. This flaw affects binutils versions prior to 2.34.

CREATE(Triage):(User=admin) [CVE-2020-35494|https://nvd.nist.gov/vuln/detail/CVE-2020-35494]

CVEs


Live chat
Online