« List of all CVEs

CVE-2023-25584

Out of bounds read in parse_module function in bfd/vms-alpha.c

Published: 9/14/2023 Last updated: 2/13/2025 Reserved: 2/7/2023

An out-of-bounds read flaw was found in the parse_module function in bfd/vms-alpha.c in Binutils.

CNA assigner: redhat (53f830b8-0a3f-465b-8143-3b8a9948e749) Requested by: n/a

Metrics

Version Score Severity Vector String
3.1 6.3 Medium CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:N/A:H

Opam packages affected (3)

bap-std clangml conf-binutils

Products affected (24)

Product Vendor Version
Fedora Fedora 17.3 versions prior to 17.3R3-S3 on EX4300 Series
Red Hat Enterprise Linux 6 Red Hat 10 Version 1803 for x64-based Systems
Red Hat Enterprise Linux 7 Red Hat n/a
Red Hat Enterprise Linux 8 Red Hat 10 Version 1809 for x64-based Systems
Red Hat Enterprise Linux 9 Red Hat All versions of FactoryTalk Linx
Fedora 36 Fedora 18.2 versions prior to 18.2R2 on EX4300 Series
Fedora 37 Fedora n/a
Red Hat Enterprise Linux 8 Red Hat 10 Version 1809 for ARM64-based Systems
Red Hat Enterprise Linux 8 Red Hat 9.0.0.29935
Red Hat Enterprise Linux 9 Red Hat <= 2.1.13
Red Hat Enterprise Linux 8 Red Hat n/a
Red Hat Enterprise Linux 8 Red Hat version 1803 (Core Installation)
Red Hat Enterprise Linux 9 Red Hat 14.1X53 versions prior to 14.1X53-D51 and 14.1X53-D115 on EX4300 Series
Fedora 37 Fedora 2008 R2 for x64-based Systems Service Pack 1
Fedora 36 Fedora 8.1 for 32-bit systems
Fedora 37 Fedora 17.4 versions prior to 17.4R2-S5 and 17.4R3 on EX4300 Series
Fedora 36 Fedora 2008 R2 for Itanium-Based Systems Service Pack 1
Extra Packages for Enterprise Linux 7 Fedora 7 for 32-bit Systems Service Pack 1
Fedora 37 Fedora 7 for x64-based Systems Service Pack 1
Extra Packages for Enterprise Linux 8 Fedora 17.1 versions prior to 17.1R3 on EX4300 Series
Fedora 36 Fedora <= 1.0.36
Fedora 36 Fedora RT 8.1
Extra Packages for Enterprise Linux 8 Fedora 18.1 versions prior to 18.1R3-S1 on EX4300 Series
binutils n/a 10 Version 1803 for 32-bit Systems

References (8)