An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.32. It is an out-of-bounds read leading to a SEGV in bfd_getl32 in libbfd.c, when called from pex64_get_runtime_function in pei-x86_64.c.

Subscriptions

Vendors Products
Canonical Subscribe
Ubuntu Linux Subscribe
Binutils Subscribe
Hci Management Node Subscribe
Solidfire Subscribe

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2019-18460 An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.32. It is an out-of-bounds read leading to a SEGV in bfd_getl32 in libbfd.c, when called from pex64_get_runtime_function in pei-x86_64.c.
Ubuntu USN Ubuntu USN USN-4336-1 GNU binutils vulnerabilities
Ubuntu USN Ubuntu USN USN-4336-2 GNU binutils vulnerabilities
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Sun, 13 Jul 2025 13:45:00 +0000

Type Values Removed Values Added
Metrics epss

{'score': 0.001}

epss

{'score': 0.00171}


cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-04T21:38:46.366Z

Reserved: 2019-02-23T00:00:00.000Z

Link: CVE-2019-9074

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2019-02-24T00:29:00.457

Modified: 2024-11-21T04:50:56.037

Link: CVE-2019-9074

cve-icon Redhat

Severity : Moderate

Publid Date: 2019-02-19T00:00:00Z

Links: CVE-2019-9074 - Bugzilla

cve-icon OpenCVE Enrichment

No data.

Weaknesses