finish_stab in stabs.c in GNU Binutils 2.30 allows attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact, as demonstrated by an out-of-bounds write of 8 bytes. This can occur during execution of objdump.
| Software | From | Fixed in |
|---|---|---|
| gnu / binutils | 2.30 | 2.30.x |
| canonical / ubuntu_linux | 16.04.4 | 16.04.4.x |