CVE-2020-35507Medium· 5.5▾ SunlitThere's a flaw in bfd_pef_parse_function_stubs of bfd/pef.c in binutils in versions prior to 2.34 which could allow an attacker who is able to submit a crafted file to be processed by objdump to cause a NULL pointer dereference. The grea…
▾ Sunlit zone — Low / medium · no exploitation signal
impact 30.3 · likelihood 0.3 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
1.3%
There's a flaw in bfd_pef_parse_function_stubs of bfd/pef.c in binutils in versions prior to 2.34 which could allow an attacker who is able to submit a crafted file to be processed by objdump to cause a NULL pointer dereference. The greatest threat of this flaw is to application availability.
binutils < 2.34enterprise_linux = 8.0hci_compute_node_firmwarecloud_backupontap_select_deploy_administration_utilitysolidfire,_enterprise_sds_&_hci_storage_nodesolidfire_&_hci_management_nodebrocade_fabric_operating_systemUpgrade past the affected range:
binutils 2.34Connected by shared product, vendor, weakness, or advisory.
CVE-2020-35495Medium· 5.5There's a flaw in binutils /bfd/pef.c
CVE-2020-35496Medium· 5.5There's a flaw in bfd_pef_scan_start_address() of bfd/pef.c in binutils which could allow an attacker who is able to submit a crafted file to be processed by objdump to cause a NULL pointer dereference
CVE-2020-35494Medium· 6.1There's a flaw in binutils /opcodes/tic4x-dis.c
CVE-2020-35493Medium· 5.5A flaw exists in binutils in bfd/pef.c
CVE-2026-91780Low· 3.3A weakness has been identified in GNU Binutils 2.47
CVE-2026-91781Low· 3.3A security vulnerability has been detected in GNU Binutils 2.47