← Back
USN-4336-2
Vulnerability in binutils (USN-4336-2)
Summary
vulnerability in binutils (USN-4336-2). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.26.1-1ubuntu1~16.04.8+esm1` or later.
AI summary snake-internal / snake-material-v2
A vulnerability tracked as **USN-4336-2** has been found in binutils.
Risk of unauthorized operations or information disclosure. CVSS score: ?/10.
What to do: upgrade binutils to **2.26.1-1ubuntu1~16.04.8+esm1** or later.
If unsure, ask your IT team or search "binutils USN-4336-2" on the vendor's site.
USN-4336-2 (binutils) —
Patched: `2.26.1-1ubuntu1~16.04.8+esm1` — apply immediately
Plan: 1) Audit SBOM/dependencies, 2) Stage→prod upgrade, 3) Add WAF/proxy monitoring on affected endpoints, 4) Hunt IOCs in logs.
Refs: see the GHSA / vendor advisory / patched release linked on this page.
❓ What is the problem
**A vulnerability** (unclassified) exists in binutils.
📍 Affected scope
binutils — .
🔥 Severity
Severity: ?. Risk of unauthorized operations or information disclosure
🔧 How to fix
Update to **2.26.1-1ubuntu1~16.04.8+esm1**.
🛡️ Workaround
Until the patch is applied: disable the affected feature, apply WAF rules, or restrict access via network ACLs.
🔍 Detection
Search webserver/proxy logs for unusual request patterns matching this CVE's known IOCs. Run `grep -r 'binutils' .` against your dependency files (package-lock.json, requirements.txt, go.sum) to find affected services.
Response Actions (7 steps)
Concrete steps and command examples for SOC/SRE teams to execute in order
-
1Identify exposure identify
grep -r 'binutils' . | grep -v node_modulesリポジトリと本番環境の依存ファイル (package-lock.json / requirements.txt / go.sum / Gemfile.lock 等) で `binutils` を grep し、稼働しているサービス・バージョンを把握する。
-
6Apply patch patch
Upgrade binutils to 2.26.1-1ubuntu1~16.04.8+esm1ステージング環境で 2.26.1-1ubuntu1~16.04.8+esm1 に上げて回帰テスト → 本番反映。回帰テストはアプリの主要ハッピーパスと、Step 3 で見つけた異常検知の続報チェックを含めること。
-
7Post-deployment verification verify
Confirm patched version is live in productionパッチ適用後、ステージングで PoC または同等の悪用パターンを再現して脆弱性が閉じたことを確認。本番では Step 3 と同じログクエリでアラート再発が無いか継続監視。
Affected packages
Ubuntu:Pro:16.04:LTS
binutils
[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2.26.1-1ubuntu1~16.04.8+esm1"}]}]
References
- advisory https://ubuntu.com/security/notices/USN-4336-2
- report https://ubuntu.com/security/CVE-2016-2226
- report https://ubuntu.com/security/CVE-2016-4487
- report https://ubuntu.com/security/CVE-2016-4488
- report https://ubuntu.com/security/CVE-2016-4489
- report https://ubuntu.com/security/CVE-2016-4490
- report https://ubuntu.com/security/CVE-2016-4491
- report https://ubuntu.com/security/CVE-2016-4492
- report https://ubuntu.com/security/CVE-2016-4493
- report https://ubuntu.com/security/CVE-2016-6131
- report https://ubuntu.com/security/CVE-2017-6965
- report https://ubuntu.com/security/CVE-2017-6966
- report https://ubuntu.com/security/CVE-2017-6969
- report https://ubuntu.com/security/CVE-2017-7209
- report https://ubuntu.com/security/CVE-2017-7210
- report https://ubuntu.com/security/CVE-2017-7223
- report https://ubuntu.com/security/CVE-2017-7224
- report https://ubuntu.com/security/CVE-2017-7225
- report https://ubuntu.com/security/CVE-2017-7226
- report https://ubuntu.com/security/CVE-2017-7227
- report https://ubuntu.com/security/CVE-2017-7299
- report https://ubuntu.com/security/CVE-2017-7300
- report https://ubuntu.com/security/CVE-2017-7301
- report https://ubuntu.com/security/CVE-2017-7302
- report https://ubuntu.com/security/CVE-2017-7614
- report https://ubuntu.com/security/CVE-2017-8393
- report https://ubuntu.com/security/CVE-2017-8394
- report https://ubuntu.com/security/CVE-2017-8395
- report https://ubuntu.com/security/CVE-2017-8396
- report https://ubuntu.com/security/CVE-2017-8397
- report https://ubuntu.com/security/CVE-2017-8398
- report https://ubuntu.com/security/CVE-2017-8421
- report https://ubuntu.com/security/CVE-2017-9038
- report https://ubuntu.com/security/CVE-2017-9039
- report https://ubuntu.com/security/CVE-2017-9040
- report https://ubuntu.com/security/CVE-2017-9041
- report https://ubuntu.com/security/CVE-2017-9042
- report https://ubuntu.com/security/CVE-2017-9044
- report https://ubuntu.com/security/CVE-2017-9742
- report https://ubuntu.com/security/CVE-2017-9744
- report https://ubuntu.com/security/CVE-2017-9745
- report https://ubuntu.com/security/CVE-2017-9746
- report https://ubuntu.com/security/CVE-2017-9747
- report https://ubuntu.com/security/CVE-2017-9748
- report https://ubuntu.com/security/CVE-2017-9749
- report https://ubuntu.com/security/CVE-2017-9750
- report https://ubuntu.com/security/CVE-2017-9751
- report https://ubuntu.com/security/CVE-2017-9752
- report https://ubuntu.com/security/CVE-2017-9753
- report https://ubuntu.com/security/CVE-2017-9754
- report https://ubuntu.com/security/CVE-2017-9755
- report https://ubuntu.com/security/CVE-2017-9756
- report https://ubuntu.com/security/CVE-2017-9954
- report https://ubuntu.com/security/CVE-2017-12448
- report https://ubuntu.com/security/CVE-2017-12449
- report https://ubuntu.com/security/CVE-2017-12450
- report https://ubuntu.com/security/CVE-2017-12451
- report https://ubuntu.com/security/CVE-2017-12452
- report https://ubuntu.com/security/CVE-2017-12453
- report https://ubuntu.com/security/CVE-2017-12454
- report https://ubuntu.com/security/CVE-2017-12455
- report https://ubuntu.com/security/CVE-2017-12456
- report https://ubuntu.com/security/CVE-2017-12457
- report https://ubuntu.com/security/CVE-2017-12458
- report https://ubuntu.com/security/CVE-2017-12459
- report https://ubuntu.com/security/CVE-2017-12799
- report https://ubuntu.com/security/CVE-2017-12967
- report https://ubuntu.com/security/CVE-2017-13710
- report https://ubuntu.com/security/CVE-2017-14128
- report https://ubuntu.com/security/CVE-2017-14129
- report https://ubuntu.com/security/CVE-2017-14130
- report https://ubuntu.com/security/CVE-2017-14333
- report https://ubuntu.com/security/CVE-2017-14529
- report https://ubuntu.com/security/CVE-2017-14930
- report https://ubuntu.com/security/CVE-2017-14932
- report https://ubuntu.com/security/CVE-2017-14938
- report https://ubuntu.com/security/CVE-2017-14939
- report https://ubuntu.com/security/CVE-2017-14940
- report https://ubuntu.com/security/CVE-2017-15020
- report https://ubuntu.com/security/CVE-2017-15021
- report https://ubuntu.com/security/CVE-2017-15022
- report https://ubuntu.com/security/CVE-2017-15024
- report https://ubuntu.com/security/CVE-2017-15025
- report https://ubuntu.com/security/CVE-2017-15225
- report https://ubuntu.com/security/CVE-2017-15938
- report https://ubuntu.com/security/CVE-2017-15939
- report https://ubuntu.com/security/CVE-2017-15996
- report https://ubuntu.com/security/CVE-2017-16826
- report https://ubuntu.com/security/CVE-2017-16827
- report https://ubuntu.com/security/CVE-2017-16828
- report https://ubuntu.com/security/CVE-2017-16831
- report https://ubuntu.com/security/CVE-2017-16832
- report https://ubuntu.com/security/CVE-2017-17080
- report https://ubuntu.com/security/CVE-2017-17121
- report https://ubuntu.com/security/CVE-2017-17123
- report https://ubuntu.com/security/CVE-2017-17124
- report https://ubuntu.com/security/CVE-2017-17125
- report https://ubuntu.com/security/CVE-2018-6323
- report https://ubuntu.com/security/CVE-2018-6543
- report https://ubuntu.com/security/CVE-2018-6759
- report https://ubuntu.com/security/CVE-2018-7208
- report https://ubuntu.com/security/CVE-2018-7568
- report https://ubuntu.com/security/CVE-2018-7569
- report https://ubuntu.com/security/CVE-2018-7642
- report https://ubuntu.com/security/CVE-2018-7643
- report https://ubuntu.com/security/CVE-2018-8945
- report https://ubuntu.com/security/CVE-2018-9138
- report https://ubuntu.com/security/CVE-2018-10372
- report https://ubuntu.com/security/CVE-2018-10373
- report https://ubuntu.com/security/CVE-2018-10534
- report https://ubuntu.com/security/CVE-2018-10535
- report https://ubuntu.com/security/CVE-2018-12641
- report https://ubuntu.com/security/CVE-2018-12697
- report https://ubuntu.com/security/CVE-2018-12698
- report https://ubuntu.com/security/CVE-2018-12699
- report https://ubuntu.com/security/CVE-2018-12700
- report https://ubuntu.com/security/CVE-2018-12934
- report https://ubuntu.com/security/CVE-2018-13033
- report https://ubuntu.com/security/CVE-2018-17358
- report https://ubuntu.com/security/CVE-2018-17359
- report https://ubuntu.com/security/CVE-2018-17360
- report https://ubuntu.com/security/CVE-2018-17794
- report https://ubuntu.com/security/CVE-2018-17985
- report https://ubuntu.com/security/CVE-2018-18309
- report https://ubuntu.com/security/CVE-2018-18483
- report https://ubuntu.com/security/CVE-2018-18484
- report https://ubuntu.com/security/CVE-2018-18605
- report https://ubuntu.com/security/CVE-2018-18606
- report https://ubuntu.com/security/CVE-2018-18607
- report https://ubuntu.com/security/CVE-2018-18700
- report https://ubuntu.com/security/CVE-2018-18701
- report https://ubuntu.com/security/CVE-2018-19931
- report https://ubuntu.com/security/CVE-2018-19932
- report https://ubuntu.com/security/CVE-2018-20002
- report https://ubuntu.com/security/CVE-2018-20623
- report https://ubuntu.com/security/CVE-2018-20671
- report https://ubuntu.com/security/CVE-2018-1000876
- report https://ubuntu.com/security/CVE-2019-9070
- report https://ubuntu.com/security/CVE-2019-9071
- report https://ubuntu.com/security/CVE-2019-9073
- report https://ubuntu.com/security/CVE-2019-9074
- report https://ubuntu.com/security/CVE-2019-9075
- report https://ubuntu.com/security/CVE-2019-9077
- report https://ubuntu.com/security/CVE-2019-12972
- report https://ubuntu.com/security/CVE-2019-14250
- report https://ubuntu.com/security/CVE-2019-14444
- report https://ubuntu.com/security/CVE-2019-17450
- report https://ubuntu.com/security/CVE-2019-17451