| Severity |
|
| Remote |
|
| Type |
|
| Description |
| + |
It has been discovered that readelf.c in GNU Binutils 2017-04-12 has a "shift exponent too large for type unsigned long" issue, which might allow attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted ELF file. |
|
| References |
| + |
https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;a=commitdiff;h=ddef72cdc10d82ba011a7ff81cafbbd3466acf54 |
|
| Notes |
| + |
Reproducer: https://github.com/asarubbo/poc/blob/master/00274-binutils-shifttoolarge |
| + |
Fixed: 2.29-1 |
|