CVE-2021-20294
A flaw was found in binutils readelf 2.35 program. An attacker who is able to convince a victim using readelf to read a crafted file could trigger a stack buffer overflow, out-of-bounds write of arbitrary data supplied by the attacker. The highest impact of this flaw is to confidentiality, integrity, and availability.
- Gnu Binutils
- < 2.35.2
- Fix
- Available
- CVSS 3.1
- 7.8 HIGH
- EPSS
- 3.3% (88th percentile)
- Weakness
- CWE-787
- NVD status
- Modified
- Published
- 2021-04-29
CVE-2021-20294 at NVD
2 known exploits for CVE-2021-20294
Proof-of-concept code and exploit modules indexed by Sploitus