CVE-2023-1972

Source
https://cve.org/CVERecord?id=CVE-2023-1972
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-1972.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2023-1972
Downstream
ALPINE (1)
AZL (1)
BELL (1)
CGA (2)
CLEANSTART (3)
CLSA (2)
DEBIAN (1)
ECHO (1)
MGASA (1)
OESA (3)
openSUSE (1)
ROOT (1)
SUSE (2)
UBUNTU (1)
Related
Published
2023-05-17T00:00:00Z
Modified
2026-08-28T11:30:41Z
Severity
  • 6.5 (Medium) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H CVSS Calculator
Summary
[none]
Details

A potential heap based buffer overflow was found in _bfd_elf_slurp_version_tables() in bfd/elf.c. This may lead to loss of availability.

Database specific
{
    "cna_assigner":  "redhat",
    "cwe_ids":  [
        "CWE-119"
    ],
    "osv_generated_from":  "https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/1xxx/CVE-2023-1972.json",
    "unresolved_ranges":  [
        {
            "extracted_events":  [
                {
                    "introduced":  "affected at least binutils 2.40"
                },
                {
                    "last_affected":  "affected at least binutils 2.40"
                }
            ],
            "source":  "AFFECTED_FIELD"
        }
    ]
}
References

Affected packages

Git / sourceware.org/git/binutils-gdb.git

Affected ranges

Type
GIT
Repo
https://sourceware.org/git/binutils-gdb.git
Events
Database specific
Show details
{
    "cpe":  "cpe:2.3:a:gnu:binutils:*:*:*:*:*:*:*:*",
    "extracted_events":  [
        {
            "introduced":  "2.35"
        },
        {
            "last_affected":  "2.40"
        }
    ],
    "source":  "CPE_RANGE"
}

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-1972.json"