[Bug ld/31544] Incorrect default subsystem version for POSIX PE binaries

2024-08-03 Thread pali at kernel dot org
https://sourceware.org/bugzilla/show_bug.cgi?id=31544 --- Comment #1 from Pali Rohár --- Note that default version 19.90 is specified also in MS LINK.EXE documentation: https://learn.microsoft.com/en-us/cpp/build/reference/subsystem-specify-subsystem -- You are receiving this mail because: You

[Bug binutils/32030] Algorithmic complexity vulnerability (CWE-407) in BFD

2024-08-03 Thread nhweideman at gmail dot com
https://sourceware.org/bugzilla/show_bug.cgi?id=32030 --- Comment #2 from Nicolaas Weideman --- I agree that DoS is probably not the main concern here because, as you mentioned, services analyzing untrusted code should have reasonable timeouts to prevent DoS. That being said, "timeout" is clearl