CVE-2019-9073: Canonical Ubuntu Linux

Medium severity, CVSS 5.5. EPSS: 1.1% chance of exploitation in the next 30 days.

An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.32. It is an attempted excessive memory allocation in _bfd_elf_slurp_version_tables in elf.c.

Affected products

  • Canonical Ubuntu Linux: version 18.04 only
  • GNU Binutils: version 2.32 only
  • Netapp Hci Management Node: affected versions not specified
  • Netapp Solidfire: affected versions not specified

Published 2019-02-24. Last modified 2026-06-17.