Vulnerability CVE-2023-25588


Published: 2023-09-14   Modified: 2023-09-19

Description:
A flaw was found in Binutils. The field `the_bfd` of `asymbol`struct is uninitialized in the `bfd_mach_o_get_synthetic_symtab` function, which may lead to an application crash and local denial of service.

 References:
https://bugzilla.redhat.com/show_bug.cgi?id=2167505
https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=d12f8998d2d086f0a6606589e5aedb7147e6f2f1
https://access.redhat.com/security/cve/CVE-2023-25588
https://sourceware.org/bugzilla/show_bug.cgi?id=29677

Copyright 2026, cxsecurity.com

 

Back to Top