ALAS2023-2023-425


Amazon Linux 2023 Security Advisory: ALAS-2023-425
Advisory Release Date: 2023-10-30 23:44 Pacific
Advisory Updated Date: 2023-11-03 22:40 Pacific
Severity: Medium

Issue Overview:

A potential illegal memory access in binutils has been found when parsing a corrupt file. (CVE-2023-1579)


Affected Packages:

binutils


Issue Correction:
Run dnf update binutils --releasever 2023.2.20231030 to update your system.

New Packages:
aarch64:
    binutils-devel-2.39-6.amzn2023.0.10.aarch64
    binutils-gprofng-debuginfo-2.39-6.amzn2023.0.10.aarch64
    binutils-gprofng-2.39-6.amzn2023.0.10.aarch64
    binutils-debuginfo-2.39-6.amzn2023.0.10.aarch64
    binutils-2.39-6.amzn2023.0.10.aarch64
    binutils-debugsource-2.39-6.amzn2023.0.10.aarch64

src:
    binutils-2.39-6.amzn2023.0.10.src

x86_64:
    binutils-devel-2.39-6.amzn2023.0.10.x86_64
    binutils-gprofng-debuginfo-2.39-6.amzn2023.0.10.x86_64
    binutils-debuginfo-2.39-6.amzn2023.0.10.x86_64
    binutils-gprofng-2.39-6.amzn2023.0.10.x86_64
    binutils-debugsource-2.39-6.amzn2023.0.10.x86_64
    binutils-2.39-6.amzn2023.0.10.x86_64