CVE-2020-35342: GNU Binutils

High severity, CVSS 7.5. EPSS: 0.8% chance of exploitation in the next 30 days.

GNU Binutils before 2.34 has an uninitialized-heap vulnerability in function tic4x_print_cond (file opcodes/tic4x-dis.c) which could allow attackers to make an information leak.

Affected products

  • GNU Binutils: before 2.34 (fixed in 2.34)

Published 2023-08-22. Last modified 2026-06-17.