GNU linker (ld) in GNU Binutils 2.28 is vulnerable to a heap-based buffer overflow while processing a bogus input script, leading to a program crash. This relates to lack of '\0' termination of a name field in ldlex.l.
| Software | From | Fixed in |
|---|---|---|
| gnu / binutils | 2.28 | 2.28.x |