Back to bug 1943533

Who When What Removed Added
Marian Rehak 2021-03-26 11:25:01 UTC Depends On 1943535, 1943534
Marian Rehak 2021-03-26 11:28:36 UTC Blocks 1943536
Todd Cullum 2021-03-27 18:21:32 UTC Flags needinfo?(sipoyare)
Todd Cullum 2021-03-27 19:31:34 UTC Summary CVE-2021-20294 binutils: remote stack buffer overflow WRITE may lead to a DoS via a crafted ELF CVE-2021-20294 binutils: stack buffer overflow WRITE may lead to a DoS via a crafted ELF
Siddhesh Poyarekar 2021-03-28 06:53:02 UTC Flags needinfo?(sipoyare)
Eric Christensen 2021-03-30 15:39:05 UTC Doc Text A flaw was found in binutils. A remote attacker, using a crafted ELF, can cause a stack buffer overflow leading to a denial of service or possibly have other unspecified impacts. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
Todd Cullum 2021-03-31 15:03:47 UTC Doc Text A flaw was found in binutils. A remote attacker, using a crafted ELF, can cause a stack buffer overflow leading to a denial of service or possibly have other unspecified impacts. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability. A flaw was found in binutils' readelf program. An attacker who is able to convince a victim using readelf to read a crafted file, could trigger a stack buffer overflow, out-of-bounds write of arbitrary data supplied by the attacker. The highest impact of this flaw is to confidentiality, integrity, and availability.
Todd Cullum 2021-03-31 22:41:42 UTC CC rhel8-maint
Todd Cullum 2021-03-31 22:56:49 UTC Depends On 1945439, 1945432, 1945434, 1945437, 1945433, 1945438, 1945435, 1945436
Todd Cullum 2021-03-31 23:23:12 UTC Fixed In Version binutils 2.35.2
Florencio Cano 2021-04-08 07:35:33 UTC CC vmugicag
Florencio Cano 2021-04-08 07:51:31 UTC Depends On 1947303, 1947298, 1947304, 1947299, 1947300, 1947301, 1947302
Kent Aycoth 2021-04-08 12:34:01 UTC CC caswilli
Eduardo Lima (Etrunko) 2021-09-21 19:26:27 UTC CC elima
Red Hat Bugzilla 2021-11-14 22:29:35 UTC CC fidencio
Red Hat Bugzilla 2023-07-07 08:34:43 UTC Assignee security-response-team nobody
Carlos O'Donell 2023-07-09 12:57:33 UTC CC mnewsome

Back to bug 1943533