A use after free issue exists in the Binary File Descriptor (BFD) library (aka libbfd) in GNU Binutils 2.34 in bfdhashlookup, as demonstrated in nm-new, that can cause a denial of service via a crafted file.
{
"versions": [
{
"introduced": "0"
},
{
"last_affected": "2.34"
},
{
"introduced": "0"
},
{
"last_affected": "32"
}
]
}