Summary
Multiple security issues have been
found in binutils, a toolbox for binary file manipulation. These vulnerabilities include multiple memory safety errors, buffer overflows, use-after-frees and other implementation errors may lead to the execution of arbitrary code, the bypass of security restrictions, path traversal attack or denial of service.
Solution
For the stable distribution (wheezy),
these problems have been fixed in version 2.22-8+deb7u2.
For the unstable distribution (sid), this problem has been fixed in version 2.25-3.
We recommend that you upgrade your binutils packages.
Insight
The programs in this package are used
to assemble, link and manipulate binary and object files. They may be used in conjunction with a compiler and various libraries to build programs.
Affected
binutils on Debian Linux
Detection
This check tests the installed software version using the apt package manager.
References
Updated on 2015-03-25
Severity
Classification
-
CVE CVE-2014-8484, CVE-2014-8485, CVE-2014-8501, CVE-2014-8502, CVE-2014-8503, CVE-2014-8504, CVE-2014-8737, CVE-2014-8738 -
CVSS Base Score: 7.5
AV:N/AC:L/Au:N/C:P/I:P/A:P
Related Vulnerabilities