The srec_scan function in bfd/srec.c in libdbfd in GNU binutils before 2.25 allows remote attackers to cause a denial of service (out-of-bounds read) via a small S-record.
- http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html
No PoCs found on GitHub currently.