Gnu Binutils vulnerabilities
286 known vulnerabilities affecting gnu/binutils.
Total CVEs
286
CISA KEV
0
Public exploits
12
Exploited in wild
0
Severity breakdown
CRITICAL5HIGH121MEDIUM150LOW10
Vulnerabilities
Page 1 of 15
CVE-2016-2226P3HIGHCVSS 7.8PoC≥ 0, < 2.27.51.20161102-12017-02-24
CVE-2016-2226 [HIGH] CVE-2016-2226: Integer overflow in the string_appends function in cplus-dem
Integer overflow in the string_appends function in cplus-dem.c in libiberty allows remote attackers to execute arbitrary code via a crafted executable, which triggers a buffer overflow.
osv
CVE-2017-9746P3HIGHCVSS 7.8PoCv2.282017-06-19
CVE-2017-9746 [HIGH] CWE-119 CVE-2017-9746: The disassemble_bytes function in objdump.c in GNU Binutils 2.28 allows remote attackers to cause a
The disassemble_bytes function in objdump.c in GNU Binutils 2.28 allows remote attackers to cause a denial of service (buffer overflow and application crash) or possibly have unspecified other impact via a crafted binary file, as demonstrated by mishandling of rae insns printing for this file during "objdump -D" execution.
nvdosv
CVE-2017-9750P3HIGHCVSS 7.8PoCv2.282017-06-19
CVE-2017-9750 [HIGH] CWE-119 CVE-2017-9750: opcodes/rx-decode.opc in GNU Binutils 2.28 lacks bounds checks for certain scale arrays, which allow
opcodes/rx-decode.opc in GNU Binutils 2.28 lacks bounds checks for certain scale arrays, which allows remote attackers to cause a denial of service (buffer overflow and application crash) or possibly have unspecified other impact via a crafted binary file, as demonstrated by mishandling of this file during "objdump -D" execution.
nvdosv
CVE-2017-9742P3HIGHCVSS 7.8PoCv2.282017-06-19
CVE-2017-9742 [HIGH] CWE-119 CVE-2017-9742: The score_opcodes function in opcodes/score7-dis.c in GNU Binutils 2.28 allows remote attackers to c
The score_opcodes function in opcodes/score7-dis.c in GNU Binutils 2.28 allows remote attackers to cause a denial of service (buffer overflow and application crash) or possibly have unspecified other impact via a crafted binary file, as demonstrated by mishandling of this file during "objdump -D" execution.
nvdosv
CVE-2017-9756P3HIGHCVSS 7.8PoCv2.282017-06-19
CVE-2017-9756 [HIGH] CWE-119 CVE-2017-9756: The aarch64_ext_ldst_reglist function in opcodes/aarch64-dis.c in GNU Binutils 2.28 allows remote at
The aarch64_ext_ldst_reglist function in opcodes/aarch64-dis.c in GNU Binutils 2.28 allows remote attackers to cause a denial of service (buffer overflow and application crash) or possibly have unspecified other impact via a crafted binary file, as demonstrated by mishandling of this file during "objdump -D" execution.
nvdosv
CVE-2006-2362P3HIGHCVSS 7.3PoCfixed in 2.172006-05-15
CVE-2006-2362 [HIGH] CWE-787 CVE-2006-2362: Buffer overflow in getsym in tekhex.c in libbfd in Free Software Foundation GNU Binutils before 2006
Buffer overflow in getsym in tekhex.c in libbfd in Free Software Foundation GNU Binutils before 20060423, as used by GNU strings, allows context-dependent attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a file with a crafted Tektronix Hex Format (TekHex) record in which the length character is not a val
nvdosv
CVE-2005-4807P3HIGHCVSS 7.5PoCfixed in 2.172005-12-31
CVE-2005-4807 [HIGH] CWE-119 CVE-2005-4807: Stack-based buffer overflow in the as_bad function in messages.c in the GNU as (gas) assembler in Fr
Stack-based buffer overflow in the as_bad function in messages.c in the GNU as (gas) assembler in Free Software Foundation GNU Binutils before 20050721 allows attackers to execute arbitrary code via a .c file with crafted inline assembly code.
nvdosv
CVE-2017-9749P3HIGHCVSS 7.8PoCv2.282017-06-19
CVE-2017-9749 [HIGH] CWE-119 CVE-2017-9749: The *regs* macros in opcodes/bfin-dis.c in GNU Binutils 2.28 allow remote attackers to cause a denia
The *regs* macros in opcodes/bfin-dis.c in GNU Binutils 2.28 allow remote attackers to cause a denial of service (buffer overflow and application crash) or possibly have unspecified other impact via a crafted binary file, as demonstrated by mishandling of this file during "objdump -D" execution.
nvdosv
CVE-2018-6323P3HIGHCVSS 7.8PoCv2.29.12018-01-26
CVE-2018-6323 [HIGH] CWE-190 CVE-2018-6323: The elf_object_p function in elfcode.h in the Binary File Descriptor (BFD) library (aka libbfd), as
The elf_object_p function in elfcode.h in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29.1, has an unsigned integer overflow because bfd_size_type multiplication is not used. A crafted ELF file allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact.
nvdosv
CVE-2017-9748P3HIGHCVSS 7.8PoCv2.282017-06-19
CVE-2017-9748 [HIGH] CWE-119 CVE-2017-9748: The ieee_object_p function in bfd/ieee.c in the Binary File Descriptor (BFD) library (aka libbfd), a
The ieee_object_p function in bfd/ieee.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, might allow remote attackers to cause a denial of service (buffer overflow and application crash) or possibly have unspecified other impact via a crafted binary file, as demonstrated by mishandling of this file during "
nvdosv
CVE-2017-9747P3HIGHCVSS 7.8PoCv2.282017-06-19
CVE-2017-9747 [HIGH] CWE-119 CVE-2017-9747: The ieee_archive_p function in bfd/ieee.c in the Binary File Descriptor (BFD) library (aka libbfd),
The ieee_archive_p function in bfd/ieee.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, might allow remote attackers to cause a denial of service (buffer overflow and application crash) or possibly have unspecified other impact via a crafted binary file, as demonstrated by mishandling of this file during "
nvdosv
CVE-2017-14939P4MEDIUMCVSS 5.5PoCv2.292017-09-30
CVE-2017-14939 [MEDIUM] CWE-125 CVE-2017-14939: decode_line_info in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distribute
decode_line_info in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, mishandles a length calculation, which allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted ELF file, related to read_1_byte.
nvdosv
CVE-2014-9939P3CRITICALCVSS 9.8≤ 2.252017-03-21
CVE-2014-9939 [CRITICAL] CWE-119 CVE-2014-9939: ihex.c in GNU Binutils before 2.26 contains a stack buffer overflow when printing bad bytes in Intel
ihex.c in GNU Binutils before 2.26 contains a stack buffer overflow when printing bad bytes in Intel Hex objects.
nvdosv
CVE-2025-11083P3HIGHCVSS 7.8v2.452025-09-27
CVE-2025-11083 [HIGH] CWE-119 CVE-2025-11083: A vulnerability has been found in GNU Binutils 2.45. The affected element is the function elf_swap_s
A vulnerability has been found in GNU Binutils 2.45. The affected element is the function elf_swap_shdr in the library bfd/elfcode.h of the component Linker. The manipulation leads to heap-based buffer overflow. The attack must be carried out locally. The exploit has been disclosed to the public and may be used. The identifier of the patch is 9ca49964
nvdosv
CVE-2025-11082P3HIGHCVSS 7.8v2.452025-09-27
CVE-2025-11082 [HIGH] CWE-119 CVE-2025-11082: A flaw has been found in GNU Binutils 2.45. Impacted is the function _bfd_elf_parse_eh_frame of the
A flaw has been found in GNU Binutils 2.45. Impacted is the function _bfd_elf_parse_eh_frame of the file bfd/elf-eh-frame.c of the component Linker. Executing manipulation can lead to heap-based buffer overflow. The attack is restricted to local execution. The exploit has been published and may be used. This patch is called ea1a0737c7692737a644af0486b7
nvdosv
CVE-2021-20294P3HIGHCVSS 7.8≥ 2.35, < 2.35.2vbinutils 2.35.22021-04-29
CVE-2021-20294 [HIGH] CWE-787 CVE-2021-20294: A flaw was found in binutils readelf 2.35 program. An attacker who is able to convince a victim usin
A flaw was found in binutils readelf 2.35 program. An attacker who is able to convince a victim using readelf to read a crafted file could trigger a stack buffer overflow, out-of-bounds write of arbitrary data supplied by the attacker. The highest impact of this flaw is to confidentiality, integrity, and availability.
nvdosv
CVE-2014-8485P3HIGHCVSS 7.5≤ 2.242014-12-09
CVE-2014-8485 [HIGH] CWE-94 CVE-2014-8485: The setup_group function in bfd/elf.c in libbfd in GNU binutils 2.24 and earlier allows remote attac
The setup_group function in bfd/elf.c in libbfd in GNU binutils 2.24 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via crafted section group headers in an ELF file.
nvdosv
CVE-2025-7545P3HIGHCVSS 7.8v2.452025-07-13
CVE-2025-7545 [HIGH] CWE-119 CVE-2025-7545: A vulnerability classified as problematic was found in GNU Binutils 2.45. Affected by this vulnerabi
A vulnerability classified as problematic was found in GNU Binutils 2.45. Affected by this vulnerability is the function copy_section of the file binutils/objcopy.c. The manipulation leads to heap-based buffer overflow. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used. The patch is named 08c3cbe5926e4d355b
nvdosv
CVE-2025-5244P3HIGHCVSS 7.8fixed in 2.45v2.0+44 more2025-05-27
CVE-2025-5244 [HIGH] CWE-119 CVE-2025-5244: A vulnerability was found in GNU Binutils up to 2.44. It has been rated as critical. Affected by thi
A vulnerability was found in GNU Binutils up to 2.44. It has been rated as critical. Affected by this issue is the function elf_gc_sweep of the file bfd/elflink.c of the component ld. The manipulation leads to memory corruption. An attack has to be approached locally. The exploit has been disclosed to the public and may be used. Upgrading to version 2.4
nvdosv
CVE-2025-0840P3HIGHCVSS 7.5fixed in 2.44v2.0+43 more2025-01-29
CVE-2025-0840 [HIGH] CWE-119 CVE-2025-0840: A vulnerability, which was classified as problematic, was found in GNU Binutils up to 2.43. This aff
A vulnerability, which was classified as problematic, was found in GNU Binutils up to 2.43. This affects the function disassemble_bytes of the file binutils/objdump.c. The manipulation of the argument buf leads to stack-based buffer overflow. It is possible to initiate the attack remotely. The complexity of an attack is rather high. The exploitability i
nvdosv
1 / 15Next →