GNU Binutils before 2.34 has an uninitialized-heap vulnerability in function tic4x_print_cond (file opcodes/tic4x-dis.c) which could allow attackers to make an information leak.
The product does not initialize or incorrectly initializes a resource, which might leave the resource in an unexpected state when it is accessed or used.
Link | Tags |
---|---|
https://sourceware.org/bugzilla/show_bug.cgi?id=25319 | issue tracking exploit |
https://security.netapp.com/advisory/ntap-20231006-0009/ |