CVE-2022-48065

Name
CVE-2022-48065
Description
GNU Binutils before 2.40 was discovered to contain a memory leak vulnerability var the function find_abstract_instance in dwarf2.c.
NVD Severity
medium
Other trackers
Mailing lists
Exploits
Forges
GitHub (code, issues), Aports (code, issues)

References

Type URI
MISC https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=d28fbc7197ba0e021a43f873eff90b05dcdcff6a
MISC https://sourceware.org/bugzilla/show_bug.cgi?id=29925
Third Party Advisory https://security.netapp.com/advisory/ntap-20231006-0008/
Broken Link https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git%3Bh=d28fbc7197ba0e021a43f873eff90b05dcdcff6a
Mailing List https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/GLZXZXFX2ZWTDU2QZUSZG36LZZVTKUVG/
Mailing List https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/KGSKF4GH7425S6XFDQMWTJGD5U47BAZN/

Match rules

CPE URI Source package Min version Max version
cpe:2.3:a:gnu:binutils:*:*:*:*:*:*:*:* binutils >= None < 2.40

Vulnerable and fixed packages

Source package Branch Version Maintainer Status
binutils 3.17-main 2.39-r2 Ariadne Conill <ariadne@dereferenced.org> possibly vulnerable
binutils 3.16-main 2.38-r3 Ariadne Conill <ariadne@dereferenced.org> possibly vulnerable
binutils 3.15-main 2.37-r3 Ariadne Conill <ariadne@dereferenced.org> possibly vulnerable