MGASA-2021-0011

Source
https://advisories.mageia.org/MGASA-2021-0011.html
Import Source
https://advisories.mageia.org/MGASA-2021-0011.json
JSON Data
https://api.test.osv.dev/v1/vulns/MGASA-2021-0011
Related
Published
2021-01-08T15:34:55Z
Modified
2021-01-08T14:57:24Z
Summary
Updated binutils packages fix security vulnerabilities
Details

It was discovered that mingw-binutils and binutils suffered from two vulnerabilites which might lead to DoS.

Null Pointer Dereference in debuggetreal_type could result in DoS (CVE-2020-16598).

Use-after-free in bfdhashlookup could result in DoS (CVE-2020-16592).

References
Credits

Affected packages

Mageia:7 / binutils

Package

Name
binutils
Purl
pkg:rpm/mageia/binutils?distro=mageia-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.33.1-1.1.mga7

Ecosystem specific

{
    "section": "core"
}

Mageia:7 / mingw-binutils

Package

Name
mingw-binutils
Purl
pkg:rpm/mageia/mingw-binutils?distro=mageia-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.30-3.1.mga7

Ecosystem specific

{
    "section": "core"
}

Mageia:7 / cross-binutils

Package

Name
cross-binutils
Purl
pkg:rpm/mageia/cross-binutils?distro=mageia-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.31.1-1.1.mga7

Ecosystem specific

{
    "section": "core"
}