An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.32. There is a heap-based buffer over-read in bfddoprnt in bfd.c because elfobjectp in elfcode.h mishandles an eshstrndx section of type SHTGROUP by omitting a trailing '\0' character.
{
"versions": [
{
"introduced": "0"
},
{
"last_affected": "2.32"
},
{
"introduced": "0"
},
{
"last_affected": "15.1"
},
{
"introduced": "0"
},
{
"last_affected": "15.2"
}
]
}