suse · CVE-2017-12459

Quick triage

Priority: medium Published: 2021-05-30 13:59:52 UTC Updated: 2025-04-07 23:51:23 UTC

View at Official suse advisory, NVD, CVE.org · CVE detail

Freshness: upstream tracker timestamp is available; use API updated time as primary recency signal.

Tracker summary

CVE-2017-12459 severity moderate: SUSE including 6 source package names (binutils, binutils-devel, binutils-devel-32bit, binutils-gold, libctf-nobfd0, libctf0), 57 product×package rows across 22 product lines (SUSE CaaS Platform 4.5, SUSE Enterprise Storage 7, … (22 product lines)): Known Not Affected 57.

Description:

The bfd_mach_o_read_symtab_strtab function in bfd/mach-o.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29 and earlier, allows remote attackers to cause an out of bounds heap write and possibly achieve code execution via a crafted mach-o file.

cvelogic Threat Intelligence