CVE-2017-9043: GNU Binutils

High severity, CVSS 7.8. EPSS: 2.1% chance of exploitation in the next 30 days.

readelf.c in GNU Binutils 2017-04-12 has a "shift exponent too large for type unsigned long" issue, which might allow remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted ELF file.

Affected products

  • GNU Binutils: version 2.28 only

Published 2017-05-18. Last modified 2026-06-17.