Sploitus

CVE-2021-20294

2 known exploits for CVE-2021-20294

A flaw was found in binutils readelf 2.35 program. An attacker who is able to convince a victim using readelf to read a crafted file could trigger a stack buffer overflow, out-of-bounds write of arbitrary data supplied by the attacker. The highest impact of this flaw is to confidentiality, integrity, and availability.

Affected products
Alt Linux, Suse, Binutils
Gnu Binutils
< 2.35.2
Fix
Available
CVSS 3.1
7.8 HIGH
EPSS
3.3% (88th percentile)
Weakness
CWE-787
NVD status
Modified
Published
2021-04-29
CVE-2021-20294 at NVD
Authoritative description, scoring and affected products

2 known exploits for CVE-2021-20294

Proof-of-concept code and exploit modules indexed by Sploitus