Debian Binutils vulnerabilities
259 known vulnerabilities affecting debian/binutils.
Total CVEs
259
CISA KEV
0
Public exploits
12
Exploited in wild
0
Severity breakdown
CRITICAL3HIGH40MEDIUM23LOW193
Vulnerabilities
Page 8 of 13
CVE-2025-11840P4LOWCVSS 4.8fixed in binutils 2.46-1 (forky)2025
CVE-2025-11840 [MEDIUM] CVE-2025-11840: binutils - A weakness has been identified in GNU Binutils 2.45. The affected element is the...
A weakness has been identified in GNU Binutils 2.45. The affected element is the function vfinfo of the file ldmisc.c. Executing a manipulation can lead to out-of-bounds read. The attack can only be executed locally. The exploit has been made available to the public and could be used for attacks. This patch is called 16357. It is best practice to apply a patch to
debian
CVE-2025-11413P4LOWCVSS 4.8fixed in binutils 2.46-1 (forky)2025
CVE-2025-11413 [MEDIUM] CVE-2025-11413: binutils - A vulnerability was found in GNU Binutils 2.45. Affected is the function elf_lin...
A vulnerability was found in GNU Binutils 2.45. Affected is the function elf_link_add_object_symbols of the file bfd/elflink.c of the component Linker. The manipulation results in out-of-bounds read. The attack needs to be approached locally. The exploit has been made public and could be used. Upgrading to version 2.46 is able to address this issue. The patch is
debian
CVE-2025-11081P4LOWCVSS 4.8fixed in binutils 2.46-1 (forky)2025
CVE-2025-11081 [MEDIUM] CVE-2025-11081: binutils - A vulnerability was detected in GNU Binutils 2.45. This issue affects the functi...
A vulnerability was detected in GNU Binutils 2.45. This issue affects the function dump_dwarf_section of the file binutils/objdump.c. Performing manipulation results in out-of-bounds read. The attack is only possible with local access. The exploit is now public and may be used. The patch is named f87a66db645caf8cc0e6fc87b0c28c78a38af59b. It is suggested to instal
debian
CVE-2025-11414P4LOWCVSS 4.8fixed in binutils 2.46-1 (forky)2025
CVE-2025-11414 [MEDIUM] CVE-2025-11414: binutils - A vulnerability was determined in GNU Binutils 2.45. Affected by this vulnerabil...
A vulnerability was determined in GNU Binutils 2.45. Affected by this vulnerability is the function get_link_hash_entry of the file bfd/elflink.c of the component Linker. This manipulation causes out-of-bounds read. The attack can only be executed locally. The exploit has been publicly disclosed and may be utilized. Upgrading to version 2.46 addresses this issue.
debian
CVE-2018-18605P4LOWCVSS 5.5fixed in binutils 2.32.51.20190707-1 (bookworm)2018
CVE-2018-18605 [MEDIUM] CVE-2018-18605: binutils - A heap-based buffer over-read issue was discovered in the function sec_merge_has...
A heap-based buffer over-read issue was discovered in the function sec_merge_hash_lookup in merge.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.31, because _bfd_add_merge_section mishandles section merges when size is not a multiple of entsize. A specially crafted ELF allows remote attackers to cause a denial of serv
debian
CVE-2019-14250P4LOWCVSS 5.5fixed in binutils 2.33-1 (bookworm)2019
CVE-2019-14250 [MEDIUM] CVE-2019-14250: binutils - An issue was discovered in GNU libiberty, as distributed in GNU Binutils 2.32. s...
An issue was discovered in GNU libiberty, as distributed in GNU Binutils 2.32. simple_object_elf_match in simple-object-elf.c does not check for a zero shstrndx value, leading to an integer overflow and resultant heap-based buffer overflow.
Scope: local
bookworm: resolved (fixed in 2.33-1)
bullseye: resolved (fixed in 2.33-1)
forky: resolved (fixed in 2.33-1)
sid
debian
CVE-2019-12972P4LOWCVSS 5.5fixed in binutils 2.32.51.20190707-1 (bookworm)2019
CVE-2019-12972 [MEDIUM] CVE-2019-12972: binutils - An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd)...
An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.32. There is a heap-based buffer over-read in _bfd_doprnt in bfd.c because elf_object_p in elfcode.h mishandles an e_shstrndx section of type SHT_GROUP by omitting a trailing '\0' character.
Scope: local
bookworm: resolved (fixed in 2.32.51.20190707-
debian
CVE-2016-4491P4LOWCVSS 5.5fixed in binutils 2.28-3 (bookworm)2016
CVE-2016-4491 [MEDIUM] CVE-2016-4491: binutils - The d_print_comp function in cp-demangle.c in libiberty allows remote attackers ...
The d_print_comp function in cp-demangle.c in libiberty allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted binary, which triggers infinite recursion and a buffer overflow, related to a node having "itself as ancestor more than once."
Scope: local
bookworm: resolved (fixed in 2.28-3)
bullseye: resolved (fixed in 2.28-3)
debian
CVE-2025-11494P4LOWCVSS 4.8fixed in binutils 2.46-1 (forky)2025
CVE-2025-11494 [MEDIUM] CVE-2025-11494: binutils - A vulnerability was found in GNU Binutils 2.45. Impacted is the function _bfd_x8...
A vulnerability was found in GNU Binutils 2.45. Impacted is the function _bfd_x86_elf_late_size_sections of the file bfd/elfxx-x86.c of the component Linker. The manipulation results in out-of-bounds read. The attack needs to be approached locally. The exploit has been made public and could be used. The patch is identified as b6ac5a8a5b82f0ae6a4642c8d7149b325f4cc
debian
CVE-2018-20651P4LOWCVSS 5.5fixed in binutils 2.32.51.20190707-1 (bookworm)2018
CVE-2018-20651 [MEDIUM] CVE-2018-20651: binutils - A NULL pointer dereference was discovered in elf_link_add_object_symbols in elfl...
A NULL pointer dereference was discovered in elf_link_add_object_symbols in elflink.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.31.1. This occurs for a crafted ET_DYN with no program headers. A specially crafted ELF file allows remote attackers to cause a denial of service, as demonstrated by ld.
Scope: local
bookw
debian
CVE-2018-20671P4LOWCVSS 5.5fixed in binutils 2.32.51.20190707-1 (bookworm)2018
CVE-2018-20671 [MEDIUM] CVE-2018-20671: binutils - load_specific_debug_section in objdump.c in GNU Binutils through 2.31.1 contains...
load_specific_debug_section in objdump.c in GNU Binutils through 2.31.1 contains an integer overflow vulnerability that can trigger a heap-based buffer overflow via a crafted section size.
Scope: local
bookworm: resolved (fixed in 2.32.51.20190707-1)
bullseye: resolved (fixed in 2.32.51.20190707-1)
forky: resolved (fixed in 2.32.51.20190707-1)
sid: resolved (fixe
debian
CVE-2016-4490P4LOWCVSS 5.5fixed in binutils 2.27.51.20161102-1 (bookworm)2016
CVE-2016-4490 [MEDIUM] CVE-2016-4490: binutils - Integer overflow in cp-demangle.c in libiberty allows remote attackers to cause ...
Integer overflow in cp-demangle.c in libiberty allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted binary, related to inconsistent use of the long and int types for lengths.
Scope: local
bookworm: resolved (fixed in 2.27.51.20161102-1)
bullseye: resolved (fixed in 2.27.51.20161102-1)
forky: resolved (fixed in 2.27.51.20
debian
CVE-2025-3198P4LOWCVSS 4.8fixed in binutils 2.45-3 (forky)2025
CVE-2025-3198 [MEDIUM] CVE-2025-3198: binutils - A vulnerability has been found in GNU Binutils 2.43/2.44 and classified as probl...
A vulnerability has been found in GNU Binutils 2.43/2.44 and classified as problematic. Affected by this vulnerability is the function display_info of the file binutils/bucomm.c of the component objdump. The manipulation leads to memory leak. An attack has to be approached locally. The exploit has been disclosed to the public and may be used. The patch is named ba6
debian
CVE-2025-8224P4LOWCVSS 4.8fixed in binutils 2.43.1-4 (forky)2025
CVE-2025-8224 [MEDIUM] CVE-2025-8224: binutils - A vulnerability has been found in GNU Binutils 2.44 and classified as problemati...
A vulnerability has been found in GNU Binutils 2.44 and classified as problematic. This vulnerability affects the function bfd_elf_get_str_section of the file bfd/elf.c of the component BFD Library. The manipulation leads to null pointer dereference. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used. The
debian
CVE-2018-18607P4LOWCVSS 5.5fixed in binutils 2.32.51.20190707-1 (bookworm)2018
CVE-2018-18607 [MEDIUM] CVE-2018-18607: binutils - An issue was discovered in elf_link_input_bfd in elflink.c in the Binary File De...
An issue was discovered in elf_link_input_bfd in elflink.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.31. There is a NULL pointer dereference in elf_link_input_bfd when used for finding STT_TLS symbols without any TLS section. A specially crafted ELF allows remote attackers to cause a denial of service, as demonstra
debian
CVE-2018-18606P4LOWCVSS 5.5fixed in binutils 2.32.51.20190707-1 (bookworm)2018
CVE-2018-18606 [MEDIUM] CVE-2018-18606: binutils - An issue was discovered in the merge_strings function in merge.c in the Binary F...
An issue was discovered in the merge_strings function in merge.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.31. There is a NULL pointer dereference in _bfd_add_merge_section when attempting to merge sections with large alignments. A specially crafted ELF allows remote attackers to cause a denial of service, as demon
debian
CVE-2017-15023P4LOWCVSS 5.5fixed in binutils 2.29.90.20180122-1 (bookworm)2017
CVE-2017-15023 [MEDIUM] CVE-2017-15023: binutils - read_formatted_entries in dwarf2.c in the Binary File Descriptor (BFD) library (...
read_formatted_entries in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, does not properly validate the format count, which allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted ELF file, related to concat_filename.
Scope: local
bookworm: resolve
debian
CVE-2018-19932P4LOWCVSS 5.5fixed in binutils 2.32.51.20190707-1 (bookworm)2018
CVE-2018-19932 [MEDIUM] CVE-2018-19932: binutils - An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd)...
An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils through 2.31. There is an integer overflow and infinite loop caused by the IS_CONTAINED_BY_LMA macro in elf.c.
Scope: local
bookworm: resolved (fixed in 2.32.51.20190707-1)
bullseye: resolved (fixed in 2.32.51.20190707-1)
forky: resolved (fixed in 2.32
debian
CVE-2018-18484P4LOWCVSS 5.5fixed in binutils 2.32.51.20190707-1 (bookworm)2018
CVE-2018-18484 [MEDIUM] CVE-2018-18484: binutils - An issue was discovered in cp-demangle.c in GNU libiberty, as distributed in GNU...
An issue was discovered in cp-demangle.c in GNU libiberty, as distributed in GNU Binutils 2.31. Stack Exhaustion occurs in the C++ demangling functions provided by libiberty, and there is a stack consumption problem caused by recursive stack frames: cplus_demangle_type, d_bare_function_type, d_function_type.
Scope: local
bookworm: resolved (fixed in 2.32.51.20190
debian
CVE-2018-18309P4LOWCVSS 5.5fixed in binutils 2.32.51.20190707-1 (bookworm)2018
CVE-2018-18309 [MEDIUM] CVE-2018-18309: binutils - An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd)...
An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.31. An invalid memory address dereference was discovered in read_reloc in reloc.c. The vulnerability causes a segmentation fault and application crash, which leads to denial of service, as demonstrated by objdump, because of missing _bfd_clear_conten
debian