CVE-2014-8737

Source
https://cve.org/CVERecord?id=CVE-2014-8737
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2014-8737.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2014-8737
Downstream
Related
Withdrawn
2026-01-27T04:13:27.444147Z
Published
2014-12-09T23:59:07Z
Modified
2026-01-27T04:13:27.444147Z
Summary
[none]
Details

Multiple directory traversal vulnerabilities in GNU binutils 2.24 and earlier allow local users to delete arbitrary files via a .. (dot dot) or full path name in an archive to (1) strip or (2) objcopy or create arbitrary files via (3) a .. (dot dot) or full path name in an archive to ar.

References

Affected packages