USN-6581-1

Source
https://ubuntu.com/security/notices/USN-6581-1
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-6581-1.json
JSON Data
https://api.osv.dev/v1/vulns/USN-6581-1
Upstream
Related
Published
2024-01-15T11:57:53.829934Z
Modified
2025-09-08T16:38:02Z
Summary
binutils vulnerabilities
Details

It was discovered that GNU binutils was not properly performing bounds checks in several functions, which could lead to a buffer overflow. An attacker could possibly use this issue to cause a denial of service, expose sensitive information or execute arbitrary code. (CVE-2022-44840, CVE-2022-45703)

It was discovered that GNU binutils incorrectly handled memory management operations in several of its functions, which could lead to excessive memory consumption due to memory leaks. An attacker could possibly use these issues to cause a denial of service. (CVE-2022-47007, CVE-2022-47008, CVE-2022-47010, CVE-2022-47011)

References

Affected packages

Ubuntu:20.04:LTS / binutils

Package

Name
binutils
Purl
pkg:deb/ubuntu/binutils@2.34-6ubuntu1.8?arch=source&distro=focal

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.34-6ubuntu1.8

Affected versions

2.*

2.33-2ubuntu1
2.33.1-1ubuntu1
2.33.1-5ubuntu1
2.33.1-6ubuntu1
2.33.1-6ubuntu3
2.33.90.20200122-1ubuntu2
2.34-1ubuntu1
2.34-3ubuntu1
2.34-4ubuntu1
2.34-5ubuntu1
2.34-6ubuntu1
2.34-6ubuntu1.1
2.34-6ubuntu1.3
2.34-6ubuntu1.4
2.34-6ubuntu1.5
2.34-6ubuntu1.6
2.34-6ubuntu1.7

Ecosystem specific

{
    "availability": "No subscription required",
    "binaries": [
        {
            "binary_name": "binutils",
            "binary_version": "2.34-6ubuntu1.8"
        },
        {
            "binary_name": "binutils-aarch64-linux-gnu",
            "binary_version": "2.34-6ubuntu1.8"
        },
        {
            "binary_name": "binutils-alpha-linux-gnu",
            "binary_version": "2.34-6ubuntu1.8"
        },
        {
            "binary_name": "binutils-arm-linux-gnueabi",
            "binary_version": "2.34-6ubuntu1.8"
        },
        {
            "binary_name": "binutils-arm-linux-gnueabihf",
            "binary_version": "2.34-6ubuntu1.8"
        },
        {
            "binary_name": "binutils-common",
            "binary_version": "2.34-6ubuntu1.8"
        },
        {
            "binary_name": "binutils-dev",
            "binary_version": "2.34-6ubuntu1.8"
        },
        {
            "binary_name": "binutils-for-build",
            "binary_version": "2.34-6ubuntu1.8"
        },
        {
            "binary_name": "binutils-for-host",
            "binary_version": "2.34-6ubuntu1.8"
        },
        {
            "binary_name": "binutils-hppa-linux-gnu",
            "binary_version": "2.34-6ubuntu1.8"
        },
        {
            "binary_name": "binutils-hppa64-linux-gnu",
            "binary_version": "2.34-6ubuntu1.8"
        },
        {
            "binary_name": "binutils-i686-gnu",
            "binary_version": "2.34-6ubuntu1.8"
        },
        {
            "binary_name": "binutils-i686-kfreebsd-gnu",
            "binary_version": "2.34-6ubuntu1.8"
        },
        {
            "binary_name": "binutils-i686-linux-gnu",
            "binary_version": "2.34-6ubuntu1.8"
        },
        {
            "binary_name": "binutils-ia64-linux-gnu",
            "binary_version": "2.34-6ubuntu1.8"
        },
        {
            "binary_name": "binutils-m68k-linux-gnu",
            "binary_version": "2.34-6ubuntu1.8"
        },
        {
            "binary_name": "binutils-multiarch",
            "binary_version": "2.34-6ubuntu1.8"
        },
        {
            "binary_name": "binutils-multiarch-dev",
            "binary_version": "2.34-6ubuntu1.8"
        },
        {
            "binary_name": "binutils-powerpc-linux-gnu",
            "binary_version": "2.34-6ubuntu1.8"
        },
        {
            "binary_name": "binutils-powerpc64-linux-gnu",
            "binary_version": "2.34-6ubuntu1.8"
        },
        {
            "binary_name": "binutils-powerpc64le-linux-gnu",
            "binary_version": "2.34-6ubuntu1.8"
        },
        {
            "binary_name": "binutils-riscv64-linux-gnu",
            "binary_version": "2.34-6ubuntu1.8"
        },
        {
            "binary_name": "binutils-s390x-linux-gnu",
            "binary_version": "2.34-6ubuntu1.8"
        },
        {
            "binary_name": "binutils-sh4-linux-gnu",
            "binary_version": "2.34-6ubuntu1.8"
        },
        {
            "binary_name": "binutils-source",
            "binary_version": "2.34-6ubuntu1.8"
        },
        {
            "binary_name": "binutils-sparc64-linux-gnu",
            "binary_version": "2.34-6ubuntu1.8"
        },
        {
            "binary_name": "binutils-x86-64-kfreebsd-gnu",
            "binary_version": "2.34-6ubuntu1.8"
        },
        {
            "binary_name": "binutils-x86-64-linux-gnu",
            "binary_version": "2.34-6ubuntu1.8"
        },
        {
            "binary_name": "binutils-x86-64-linux-gnux32",
            "binary_version": "2.34-6ubuntu1.8"
        },
        {
            "binary_name": "libbinutils",
            "binary_version": "2.34-6ubuntu1.8"
        },
        {
            "binary_name": "libctf-nobfd0",
            "binary_version": "2.34-6ubuntu1.8"
        },
        {
            "binary_name": "libctf0",
            "binary_version": "2.34-6ubuntu1.8"
        }
    ]
}

Ubuntu:22.04:LTS / binutils

Package

Name
binutils
Purl
pkg:deb/ubuntu/binutils@2.38-4ubuntu2.5?arch=source&distro=jammy

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.38-4ubuntu2.5

Affected versions

2.*

2.37-7ubuntu1
2.37-9ubuntu1
2.37-10ubuntu1
2.37.50.20220106-2ubuntu1
2.37.90.20220126-0ubuntu1
2.37.90.20220130-0ubuntu2
2.38-1ubuntu1
2.38-2ubuntu1
2.38-3ubuntu1
2.38-4ubuntu2
2.38-4ubuntu2.1
2.38-4ubuntu2.2
2.38-4ubuntu2.3
2.38-4ubuntu2.4

Ecosystem specific

{
    "availability": "No subscription required",
    "binaries": [
        {
            "binary_name": "binutils",
            "binary_version": "2.38-4ubuntu2.5"
        },
        {
            "binary_name": "binutils-aarch64-linux-gnu",
            "binary_version": "2.38-4ubuntu2.5"
        },
        {
            "binary_name": "binutils-alpha-linux-gnu",
            "binary_version": "2.38-4ubuntu2.5"
        },
        {
            "binary_name": "binutils-arm-linux-gnueabi",
            "binary_version": "2.38-4ubuntu2.5"
        },
        {
            "binary_name": "binutils-arm-linux-gnueabihf",
            "binary_version": "2.38-4ubuntu2.5"
        },
        {
            "binary_name": "binutils-common",
            "binary_version": "2.38-4ubuntu2.5"
        },
        {
            "binary_name": "binutils-dev",
            "binary_version": "2.38-4ubuntu2.5"
        },
        {
            "binary_name": "binutils-for-build",
            "binary_version": "2.38-4ubuntu2.5"
        },
        {
            "binary_name": "binutils-for-host",
            "binary_version": "2.38-4ubuntu2.5"
        },
        {
            "binary_name": "binutils-hppa-linux-gnu",
            "binary_version": "2.38-4ubuntu2.5"
        },
        {
            "binary_name": "binutils-hppa64-linux-gnu",
            "binary_version": "2.38-4ubuntu2.5"
        },
        {
            "binary_name": "binutils-i686-gnu",
            "binary_version": "2.38-4ubuntu2.5"
        },
        {
            "binary_name": "binutils-i686-kfreebsd-gnu",
            "binary_version": "2.38-4ubuntu2.5"
        },
        {
            "binary_name": "binutils-i686-linux-gnu",
            "binary_version": "2.38-4ubuntu2.5"
        },
        {
            "binary_name": "binutils-ia64-linux-gnu",
            "binary_version": "2.38-4ubuntu2.5"
        },
        {
            "binary_name": "binutils-m68k-linux-gnu",
            "binary_version": "2.38-4ubuntu2.5"
        },
        {
            "binary_name": "binutils-multiarch",
            "binary_version": "2.38-4ubuntu2.5"
        },
        {
            "binary_name": "binutils-multiarch-dev",
            "binary_version": "2.38-4ubuntu2.5"
        },
        {
            "binary_name": "binutils-powerpc-linux-gnu",
            "binary_version": "2.38-4ubuntu2.5"
        },
        {
            "binary_name": "binutils-powerpc64-linux-gnu",
            "binary_version": "2.38-4ubuntu2.5"
        },
        {
            "binary_name": "binutils-powerpc64le-linux-gnu",
            "binary_version": "2.38-4ubuntu2.5"
        },
        {
            "binary_name": "binutils-riscv64-linux-gnu",
            "binary_version": "2.38-4ubuntu2.5"
        },
        {
            "binary_name": "binutils-s390x-linux-gnu",
            "binary_version": "2.38-4ubuntu2.5"
        },
        {
            "binary_name": "binutils-sh4-linux-gnu",
            "binary_version": "2.38-4ubuntu2.5"
        },
        {
            "binary_name": "binutils-source",
            "binary_version": "2.38-4ubuntu2.5"
        },
        {
            "binary_name": "binutils-sparc64-linux-gnu",
            "binary_version": "2.38-4ubuntu2.5"
        },
        {
            "binary_name": "binutils-x86-64-kfreebsd-gnu",
            "binary_version": "2.38-4ubuntu2.5"
        },
        {
            "binary_name": "binutils-x86-64-linux-gnu",
            "binary_version": "2.38-4ubuntu2.5"
        },
        {
            "binary_name": "binutils-x86-64-linux-gnux32",
            "binary_version": "2.38-4ubuntu2.5"
        },
        {
            "binary_name": "libbinutils",
            "binary_version": "2.38-4ubuntu2.5"
        },
        {
            "binary_name": "libctf-nobfd0",
            "binary_version": "2.38-4ubuntu2.5"
        },
        {
            "binary_name": "libctf0",
            "binary_version": "2.38-4ubuntu2.5"
        }
    ]
}