There's a flaw in binutils /opcodes/tic4x-dis.c. An attacker who is able to submit a crafted input file to be processed by binutils could cause usage of uninitialized memory. The highest threat is to application availability with a lower threat to data confidentiality. This flaw affects binutils versions prior to 2.34.
2021-01-04T15:15:13.200
2024-11-21T05:27:25.210
Modified
CVSSv3.1: 6.1 (MEDIUM)
AV:N/AC:M/Au:N/C:P/I:N/A:P
8.6
4.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | gnu | binutils | < 2.34 | Yes |
Operating System | fedoraproject | fedora | 32 | Yes |
Application | netapp | cloud_backup | - | Yes |
Application | netapp | ontap_select_deploy_administration_utility | - | Yes |
Application | netapp | solidfire\,_enterprise_sds_\&_hci_storage_node | - | Yes |
Application | netapp | solidfire_\&_hci_management_node | - | Yes |
Operating System | broadcom | brocade_fabric_operating_system_firmware | - | Yes |
Operating System | netapp | hci_compute_node_firmware | - | Yes |
Hardware | netapp | hci_compute_node | - | No |