CVE-2019-17451: Canonical Ubuntu Linux
Medium severity, CVSS 6.5. EPSS: 2.4% chance of exploitation in the next 30 days.
An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.32. It is an integer overflow leading to a SEGV in _bfd_dwarf2_find_nearest_line in dwarf2.c, as demonstrated by nm.
Affected products
- Canonical Ubuntu Linux: version 18.04 only
- GNU Binutils: version 2.32 only
- Opensuse Leap: version 15.1 only; version 15.2 only
Published 2019-10-10. Last modified 2026-06-17.