CVE-2017-7210: GNU Binutils

Medium severity, CVSS 5.5. EPSS: 1.2% chance of exploitation in the next 30 days.

objdump in GNU Binutils 2.28 is vulnerable to multiple heap-based buffer over-reads (of size 1 and size 8) while handling corrupt STABS enum type strings in a crafted object file, leading to program crash.

Affected products

  • GNU Binutils: version 2.28 only

Published 2017-03-21. Last modified 2026-06-17.