CVE-2026-6845
published 2026-04-22CVE-2026-6845: A flaw was found in binutils, specifically within the `readelf` utility. This vulnerability allows a local attacker to cause a Denial of Service (DoS) by…
PriorityP417medium5CVSS 3.1
AVLACLPRLUIRSUCNINAH
EPSS
0.15%
4.4th percentile
A flaw was found in binutils, specifically within the `readelf` utility. This vulnerability allows a local attacker to cause a Denial of Service (DoS) by tricking a user into processing a specially crafted Executable and Linkable Format (ELF) file. The exploitation of this flaw can lead to the system becoming unresponsive due to excessive resource consumption or a program crash.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| gnu | binutils | — | — |
| redhat | enterprise_linux | — | — |
| redhat | enterprise_linux | — | — |
| redhat | enterprise_linux | — | — |
| redhat | enterprise_linux | — | — |
| redhat | enterprise_linux | — | — |
| redhat | openshift_container_platform | — | — |
CVSS provenance
nvdv3.15.0MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:N/I:N/A:H
vendor_redhat5.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-chmq-57c3-4p7v: A flaw was found in binutils, specifically within the `readelf` utility
ghsa_unreviewed·2026-04-22
CVE-2026-6845 [MEDIUM] CWE-476 GHSA-chmq-57c3-4p7v: A flaw was found in binutils, specifically within the `readelf` utility
A flaw was found in binutils, specifically within the `readelf` utility. This vulnerability allows a local attacker to cause a Denial of Service (DoS) by tricking a user into processing a specially crafted Executable and Linkable Format (ELF) file. The exploitation of this flaw can lead to the system becoming unresponsive due to excessive resource consumption or a program crash.
Red Hat
binutils: Binutils: Denial of Service via crafted ELF file
vendor_redhat·2026-04-13·CVSS 5.0
CVE-2026-6845 [MEDIUM] CWE-476 binutils: Binutils: Denial of Service via crafted ELF file
binutils: Binutils: Denial of Service via crafted ELF file
A flaw was found in binutils, specifically within the `readelf` utility. This vulnerability allows a local attacker to cause a Denial of Service (DoS) by tricking a user into processing a specially crafted Executable and Linkable Format (ELF) file. The exploitation of this flaw can lead to the system becoming unresponsive due to excessive resource consumption or a program crash.
Statement: This Moderate impact vulnerability in the `readelf` utility, part of `binutils`, can lead to a denial of service. An attacker could exploit this by convincing a user to process a specially crafted ELF file, resulting in resource exhaustion or a null pointer dereference. This affects Red Hat Enterprise Linux and Red Hat Developer Toolset where `
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2026-6845 rizin: Binutils: Denial of Service via crafted ELF file [epel-all]
bugzilla·2026-04-22·CVSS 5.0
CVE-2026-6845 [MEDIUM] CVE-2026-6845 rizin: Binutils: Denial of Service via crafted ELF file [epel-all]
CVE-2026-6845 rizin: Binutils: Denial of Service via crafted ELF file [epel-all]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
Bugzilla
CVE-2026-6845 rizin: Binutils: Denial of Service via crafted ELF file [fedora-all]
bugzilla·2026-04-22·CVSS 5.0
CVE-2026-6845 [MEDIUM] CVE-2026-6845 rizin: Binutils: Denial of Service via crafted ELF file [fedora-all]
CVE-2026-6845 rizin: Binutils: Denial of Service via crafted ELF file [fedora-all]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
Bugzilla
CVE-2026-6845 mingw-binutils: Binutils: Denial of Service via crafted ELF file [fedora-all]
bugzilla·2026-04-22·CVSS 5.0
CVE-2026-6845 [MEDIUM] CVE-2026-6845 mingw-binutils: Binutils: Denial of Service via crafted ELF file [fedora-all]
CVE-2026-6845 mingw-binutils: Binutils: Denial of Service via crafted ELF file [fedora-all]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
Bugzilla
CVE-2026-6845 binutils: Binutils: Denial of Service via crafted ELF file [fedora-all]
bugzilla·2026-04-22·CVSS 5.0
CVE-2026-6845 [MEDIUM] CVE-2026-6845 binutils: Binutils: Denial of Service via crafted ELF file [fedora-all]
CVE-2026-6845 binutils: Binutils: Denial of Service via crafted ELF file [fedora-all]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
Bugzilla
CVE-2026-6845 radare2: Binutils: Denial of Service via crafted ELF file [epel-all]
bugzilla·2026-04-22·CVSS 5.0
CVE-2026-6845 [MEDIUM] CVE-2026-6845 radare2: Binutils: Denial of Service via crafted ELF file [epel-all]
CVE-2026-6845 radare2: Binutils: Denial of Service via crafted ELF file [epel-all]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
Bugzilla
CVE-2026-6845 gdb: Binutils: Denial of Service via crafted ELF file [fedora-all]
bugzilla·2026-04-22·CVSS 5.0
CVE-2026-6845 [MEDIUM] CVE-2026-6845 gdb: Binutils: Denial of Service via crafted ELF file [fedora-all]
CVE-2026-6845 gdb: Binutils: Denial of Service via crafted ELF file [fedora-all]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
Bugzilla
CVE-2026-6845 insight: Binutils: Denial of Service via crafted ELF file [fedora-all]
bugzilla·2026-04-22·CVSS 5.0
CVE-2026-6845 [MEDIUM] CVE-2026-6845 insight: Binutils: Denial of Service via crafted ELF file [fedora-all]
CVE-2026-6845 insight: Binutils: Denial of Service via crafted ELF file [fedora-all]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
Discussion:
readelf utility not included in insight package.
Closin.
Bugzilla
CVE-2026-6845 radare2: Binutils: Denial of Service via crafted ELF file [fedora-all]
bugzilla·2026-04-22·CVSS 5.0
CVE-2026-6845 [MEDIUM] CVE-2026-6845 radare2: Binutils: Denial of Service via crafted ELF file [fedora-all]
CVE-2026-6845 radare2: Binutils: Denial of Service via crafted ELF file [fedora-all]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
Bugzilla
CVE-2026-6846 binutils: Binutils: Arbitrary code execution via malformed XCOFF object file processing
bugzilla·2026-04-21·CVSS 5.0
CVE-2026-6846 [MEDIUM] CVE-2026-6846 binutils: Binutils: Arbitrary code execution via malformed XCOFF object file processing
CVE-2026-6846 binutils: Binutils: Arbitrary code execution via malformed XCOFF object file processing
Heap-buffer-overflow WRITE in xcoff_link_add_symbols() in bfd/xcofflink.c. Triggered by malformed XCOFF object file during linking. Fixed upstream by Alan Modra.
Public reference: https://sourceware.org/bugzilla/show_bug.cgi?id=34049
Affects binutils <= 2.46.
Discussion:
There's no security issue here, please review the binutils and gdb security policies:
https://sourceware.org/git/?p=binutils-gdb.git;a=blob_plain;f=binutils/SECURITY.txt;hb=HEAD
https://sourceware.org/git/?p=binutils-gdb.git;a=blob_plain;f=gdb/SECURITY.txt;hb=HEAD
Same for CVE-2026-6845, please lets not issue CVE numbers for binutils and gdb like this, it's just a waste of time for everyone.
Bugzilla
CVE-2026-6845 binutils: Binutils: Denial of Service via crafted ELF file
bugzilla·2026-04-21·CVSS 5.0
CVE-2026-6845 [MEDIUM] CVE-2026-6845 binutils: Binutils: Denial of Service via crafted ELF file
CVE-2026-6845 binutils: Binutils: Denial of Service via crafted ELF file
Two DoS vulnerabilities in readelf 2.46:
1. Resource exhaustion: 1KB crafted ELF triggers 6.3TB allocation (357M relocation entries), OOM kill
2. Null pointer deref: malformed sh_entsize/shoff causes SIGSEGV
Found via AFL++ QEMU-mode fuzzing. PoC files provided. Not disclosed publicly.
2026-04-22
Published