Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2017-8421

The function coff_set_alignment_hook in coffcode.h in Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, has a memory leak vulnerability which can cause memory exhaustion in objdump via a crafted PE file. Additional validation in dump_relocs_in_section in objdump.c can resolve this.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 25.8%
CVSS Severity
CVSS v3 Score 5.5
CVSS v2 Score 7.1
Products affected by CVE-2017-8421
  • Gnu » Binutils » Version: 2.28
    cpe:2.3:a:gnu:binutils:2.28


Contact Us

Shodan ® - All rights reserved