]> code.ossystems Code Review - openembedded-core.git/commit
binutils: CVE-2017-8421
authorThiruvadi Rajaraman <trajaraman@mvista.com>
Wed, 13 Sep 2017 11:44:14 +0000 (17:14 +0530)
committerRichard Purdie <richard.purdie@linuxfoundation.org>
Sun, 7 Jan 2018 17:09:46 +0000 (17:09 +0000)
commit09c642a70e2a12dcc01ffe45c333011a142c02a7
tree49c6f2fc5558a67aff284dd47b61d04aaaeaf612
parente5aa4adaddbae184bbbb1c42f79c1deba931c72a
binutils: CVE-2017-8421

Source: git://sourceware.org/git/binutils-gdb.git
MR: 74140
Type: Security Fix
Disposition: Backport from binutils-2_29
ChangeID: 5f6dd48c427de8663c5a80af6db44ce5c579d42c
Description:

Prevent memory exhaustion from a corrupt PE binary with an overlarge number of relocs.

PR 21440
 * objdump.c (dump_relocs_in_section): Check for an excessive
   number of relocs before attempting to dump them.

Affects: <= 2.29

Author: Alan Modra <amodra@gmail.com>
Signed-off-by: Thiruvadi Rajaraman <trajaraman@mvista.com>
Reviewed-by: Armin Kuster <akuster@mvista.com>
Signed-off-by: Armin Kuster <akuster@mvista.com>
Signed-off-by: Armin Kuster <akuster808@gmail.com>
meta/recipes-devtools/binutils/binutils-2.27.inc
meta/recipes-devtools/binutils/binutils/CVE-2017-8421.patch [new file with mode: 0644]