CVE-2019-9077: Canonical Ubuntu Linux

High severity, CVSS 7.8. EPSS: 2% chance of exploitation in the next 30 days.

An issue was discovered in GNU Binutils 2.32. It is a heap-based buffer overflow in process_mips_specific in readelf.c via a malformed MIPS option section.

Affected products

  • Canonical Ubuntu Linux: version 18.04 only
  • F5 Traffix Signaling Delivery Controller: from 5.0.0, up to and including 5.1.0
  • GNU Binutils: version 2.32 only
  • Netapp Element Software: affected versions not specified

Published 2019-02-24. Last modified 2026-06-17.