A vulnerability has been found in GNU Binutils up to 2.39 and classified as critical. The impacted element is the function display_debug_section of the file readelf.c of the component readelf. Performing a manipulation results in heap-based buffer overflow. This vulnerability is cataloged as CVE-2022-45703. The attack must originate from the local... Weiterlesen: CVE-2022-45703 | GNU Binutils up to 2.39 readelf readelf.c display_de…
Intelligence View
⚡ tsecurity.de Intelligence
CVE-2022-45703 | GNU Binutils up to 2.39 readelf readelf.c display_debug_section heap-based overflow (Nessus ID 353207)
A vulnerability has been found in GNU Binutils up to 2.39 and classified as critical. The impacted element is the function display_debug_section of the file…
Cyber Threat Intelligence & Forensik
ATT&CK-Navigator · IoC-Radar · Exploit-Belege
Compliance, SLA & Vendor Adherence
Advisory-Prüfung · Score-Einordnung · Fristen
BSI-Warnung (Deutschland)CVE-2022-45703
binutils: Mehrere Schwachstellen23.08.2023CISA-SSVC-Triage (vulnrichment)CVE-2022-45703
Exploitation: poc (PoC verfügbar)Automatable: no (Nicht automatisierbar)Technical Impact: total (Vollständig)
Quelle: CISA-ADP vulnrichment · Stand 2024-10-03T14:14:43.258170Z · CISA Coordinator
Advisory Radar
In herstellerseitiger Prüfung
Hersteller-Sicherheitsmeldungen & Patch-Status
Handlungsempfehlung für Administratoren
Hersteller-Advisory noch nicht formal hinterlegt. Regelmäßiges Re-Scanning der CTI-Quellen anberaumt.
Referenzen aus der Primärquelle („Verifiziert" nur bei Hersteller-Domäne):
-
Web Referencesourceware.org
-
Web Referencesecurity.netapp.com