CVE-2020-35342
CVSS 3.1 Score 7.5 of 10 (high)
Details
Published Aug 22, 2023
Updated: Oct 6, 2023
CWE ID 665
Summary
CVE-2020-35342 is a vulnerability affecting GNU Binutils before version 2.34. This issue involves an uninitialized heap in the function tic4x_print_cond located in opcodes/tic4x-dis.c. The consequence of this vulnerability is that attackers can exploit it to leak information. The exact impact of the leak is not clear, but it poses a potential risk to system security. Users are advised to update to a patched version of GNU Binutils to mitigate this vulnerability.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Products
- Gnu Binutils