Skip to main content

Vendor/product archive

gnu / binutils CVEs

Beta · best-effort

276 CVEs tagged to gnu / binutils5 Critical, 108 High, 134 Medium, 29 Low, 0 Unrated.

CVE-2025-69648

Published Mar 9, 2026

GNU Binutils thru 2.45.1 readelf contains a denial-of-service vulnerability when processing a crafted binary with malformed DWARF .debug_rnglists data. A logic flaw in the DWARF p…

CVSS 6.2 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-69647

Published Mar 9, 2026

GNU Binutils thru 2.45.1 readelf contains a denial-of-service vulnerability when processing a crafted binary with malformed DWARF loclists data. A logic flaw in the DWARF parsing…

CVSS 6.2 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-69652

Published Mar 6, 2026

GNU Binutils thru 2.46 readelf contains a vulnerability that leads to an abort (SIGABRT) when processing a crafted ELF binary with malformed DWARF abbrev or debug information. Due…

CVSS 6.2 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-69650

Published Mar 6, 2026

GNU Binutils thru 2.46 readelf contains a double free vulnerability when processing a crafted ELF binary with malformed relocation data. During GOT relocation handling, dump_reloc…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2025-69649

Published Mar 6, 2026

GNU Binutils thru 2.46 readelf contains a null pointer dereference vulnerability when processing a crafted ELF binary with malformed header fields. During relocation processing, a…

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-69651

Published Mar 6, 2026

GNU Binutils thru 2.46 readelf contains a vulnerability that leads to an invalid pointer free when processing a crafted ELF binary with malformed relocation or symbol data. If dum…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-69646

Published Mar 6, 2026

Binutils objdump contains a denial-of-service vulnerability when processing a crafted binary with malformed DWARF debug_rnglists data. A logic error in the handling of the debug_r…

CVSS 5.5 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-69645

Published Mar 6, 2026

Binutils objdump contains a denial-of-service vulnerability when processing a crafted binary with malformed DWARF debug information. A logic error in the handling of DWARF compila…

CVSS 5.5 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-69644

Published Mar 6, 2026

An issue was discovered in Binutils before 2.46. The objdump contains a denial-of-service vulnerability when processing a crafted binary with malformed debug information. A logic…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-66866

Published Dec 29, 2025

An issue was discovered in function d_abi_tags in file cp-demangle.c in BinUtils 2.26 allows attackers to cause a denial of service via crafted PE file.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2025-66865

Published Dec 29, 2025

An issue was discovered in function d_print_comp_inner in file cp-demangle.c in BinUtils 2.26 allows attackers to cause a denial of service via crafted PE file.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2025-66864

Published Dec 29, 2025

An issue was discovered in function d_print_comp_inner in file cp-demangle.c in BinUtils 2.26 allows attackers to cause a denial of service via crafted PE file.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2025-66863

Published Dec 29, 2025

An issue was discovered in function d_discriminator in file cp-demangle.c in BinUtils 2.26 allows attackers to cause a denial of service via crafted PE file.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2025-66862

Published Dec 29, 2025

A buffer overflow vulnerability in function gnu_special in file cplus-dem.c in BinUtils 2.26 allows attackers to cause a denial of service via crafted PE file.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2025-66861

Published Dec 29, 2025

An issue was discovered in function d_unqualified_name in file cp-demangle.c in BinUtils 2.26 allowing attackers to cause a denial of service via crafted PE file.

CVSS 2.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2025-11840

Published Oct 16, 2025

A weakness has been identified in GNU Binutils 2.45. The affected element is the function vfinfo of the file ldmisc.c. Executing a manipulation can lead to out-of-bounds read. The…

CVSS 1.9 · Low
evidence mentions
8
Buzz score
38.5
Vendor/product tagsBeta · best-effort

CVE-2025-11839

Published Oct 16, 2025

A security flaw has been discovered in GNU Binutils 2.45. Impacted is the function tg_tag_type of the file prdbg.c. Performing a manipulation results in unchecked return value. Th…

CVSS 1.9 · Low
evidence mentions
8
Buzz score
42.0
Vendor/product tagsBeta · best-effort

CVE-2025-11495

Published Oct 8, 2025

A vulnerability was determined in GNU Binutils 2.45. The affected element is the function elf_x86_64_relocate_section of the file elf64-x86-64.c of the component Linker. This mani…

CVSS 1.9 · Low
evidence mentions
9
Buzz score
39.5
Vendor/product tagsBeta · best-effort

CVE-2025-11494

Published Oct 8, 2025

A vulnerability was found in GNU Binutils 2.45. Impacted is the function _bfd_x86_elf_late_size_sections of the file bfd/elfxx-x86.c of the component Linker. The manipulation resu…

CVSS 1.9 · Low
evidence mentions
9
Buzz score
39.5
Vendor/product tagsBeta · best-effort
Showing 1-25 of 276 CVEsPage 1 of 12