Scientific Linux alert SLSA-2019:2075-1 (binutils)
| From: | Farhan Ahmed <fahmed@fnal.gov> | |
| To: | scientific-linux-errata@listserv.fnal.gov | |
| Subject: | Security ERRATA Moderate: binutils on SL7.x x86_64 | |
| Date: | Mon, 26 Aug 2019 19:01:11 -0000 | |
| Message-ID: | <20190826190111.482.8242@slpackages.fnal.gov> |
Synopsis: Moderate: binutils security and bug fix update Advisory ID: SLSA-2019:2075-1 Issue Date: 2019-08-06 CVE Numbers: CVE-2018-12641 CVE-2018-12697 CVE-2018-1000876 -- Security Fix(es): * binutils: integer overflow leads to heap-based buffer overflow in objdump (CVE-2018-1000876) * binutils: Stack Exhaustion in the demangling functions provided by libiberty (CVE-2018-12641) * binutils: NULL pointer dereference in work_stuff_copy_to_from in cplus- dem.c. (CVE-2018-12697) -- SL7 x86_64 binutils-devel-2.27-41.base.el7.i686.rpm binutils-2.27-41.base.el7.x86_64.rpm binutils-devel-2.27-41.base.el7.x86_64.rpm binutils-debuginfo-2.27-41.base.el7.x86_64.rpm binutils-debuginfo-2.27-41.base.el7.i686.rpm - Scientific Linux Development Team
