Security Fix(es):
There's a flaw in the BFD library of binutils in versions before 2.36. An attacker who supplies a crafted file to an application linked with BFD, and using the DWARF functionality, could cause an impact to system availability by way of excessive memory consumption.(CVE-2021-3487)
{
"severity": "Medium"
}{
"aarch64": [
"binutils-debuginfo-2.34-10.oe1.aarch64.rpm",
"binutils-debugsource-2.34-10.oe1.aarch64.rpm",
"binutils-help-2.34-10.oe1.aarch64.rpm",
"binutils-2.34-10.oe1.aarch64.rpm",
"binutils-devel-2.34-10.oe1.aarch64.rpm"
],
"x86_64": [
"binutils-debugsource-2.34-10.oe1.x86_64.rpm",
"binutils-2.34-10.oe1.x86_64.rpm",
"binutils-devel-2.34-10.oe1.x86_64.rpm",
"binutils-help-2.34-10.oe1.x86_64.rpm",
"binutils-debuginfo-2.34-10.oe1.x86_64.rpm"
],
"src": [
"binutils-2.34-10.oe1.src.rpm"
]
}