File _patchinfo of Package patchinfo.237
<patchinfo incident="237">
<issue id="902676" tracker="bnc">VUL-0: CVE-2014-8485: binutils: lack of range checking leading to controlled write in _bfd_elf_setup_sections()</issue>
<issue id="902677" tracker="bnc">VUL-0: CVE-2014-8484: binutils: invalid read flaw in libbfd</issue>
<issue id="903655" tracker="bnc">VUL-0: CVE-2014-8501: binutils: Multiple memory corruption issues in binary parsers of libbfd</issue>
<issue id="905735" tracker="bnc">VUL-0: CVE-2014-8738: binutils: Out-of-bounds memory write while processing a crafted "ar" archive</issue>
<issue id="905736" tracker="bnc">VUL-0: CVE-2014-8737: binutils: Directory traversal vulnerability allowing random file deletion/creation</issue>
<issue id="CVE-2014-8484" tracker="cve" />
<issue id="CVE-2014-8485" tracker="cve" />
<issue id="CVE-2014-8501" tracker="cve" />
<issue id="CVE-2014-8503" tracker="cve" />
<issue id="CVE-2014-8502" tracker="cve" />
<issue id="CVE-2014-8504" tracker="cve" />
<issue id="CVE-2014-8737" tracker="cve" />
<issue id="CVE-2014-8738" tracker="cve" />
<category>security</category>
<rating>moderate</rating>
<packager>matz2</packager>
<description>This binutils update fixes the following security issues:
- bnc#902676: lack of range checking leading to controlled write in
_bfd_elf_setup_sections() (CVE-2014-8485)
- bnc#902677: invalid read flaw in libbfd (CVE-2014-8484)
- bnc#903655: Multiple memory corruption issues in binary parsers of
libbfd (CVE-2014-8501, CVE-2014-8502, CVE-2014-8503, CVE-2014-8504)
- bnc#905735: Out-of-bounds memory write while processing a crafted "ar"
archive (CVE-2014-8738)
- bnc#905736: Directory traversal vulnerability allowing random file
deletion/creation (CVE-2014-8737)
</description>
<summary>Security update for binutils</summary>
</patchinfo>