CVE-2020-35507: Broadcom Brocade Fabric Operating System

Medium severity, CVSS 5.5. EPSS: 1.3% chance of exploitation in the next 30 days.

There's a flaw in bfd_pef_parse_function_stubs of bfd/pef.c in binutils in versions prior to 2.34 which could allow an attacker who is able to submit a crafted file to be processed by objdump to cause a NULL pointer dereference. The greatest threat of this flaw is to application availability.

Affected products

  • Broadcom Brocade Fabric Operating System: affected versions not specified
  • GNU Binutils: before 2.34 (fixed in 2.34)
  • Netapp Cloud Backup: affected versions not specified
  • Netapp Hci Compute Node Firmware: affected versions not specified
  • Netapp Ontap Select Deploy Administration Utility: affected versions not specified
  • Netapp Solidfire, Enterprise Sds & Hci Storage Node: affected versions not specified
  • Netapp Solidfire & Hci Management Node: affected versions not specified
  • Red Hat Enterprise Linux: version 8.0 only

Published 2021-01-04. Last modified 2026-10-08.