CVE-2020-16591: GNU Binutils

Medium severity, CVSS 5.5. EPSS: 0.9% chance of exploitation in the next 30 days.

A Denial of Service vulnerability exists in the Binary File Descriptor (BFD) in GNU Binutils 2.35 due to an invalid read in process_symbol_table, as demonstrated in readeif.

Affected products

  • GNU Binutils: version 2.35 only
  • Netapp Ontap Select Deploy Administration Utility: affected versions not specified

Published 2020-12-09. Last modified 2026-06-17.