cbcvebase.

Gnu Binutils vulnerabilities

286 known vulnerabilities affecting gnu/binutils.

Total CVEs
286
CISA KEV
0
Public exploits
12
Exploited in wild
0
Severity breakdown
CRITICAL5HIGH121MEDIUM150LOW10

Vulnerabilities

Page 4 of 15
CVE-2017-8396P3HIGHCVSS 7.5v2.282017-05-01
CVE-2017-8396 [HIGH] CWE-20 CVE-2017-8396: The Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, is vulne The Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, is vulnerable to an invalid read of size 1 because the existing reloc offset range tests didn't catch small negative offsets less than the size of the reloc field. This vulnerability causes programs that conduct an analysis of binary programs using the libbfd libr
nvdosv
CVE-2021-37322P3HIGHCVSS 7.8fixed in 2.322021-11-18
CVE-2021-37322 [HIGH] CWE-416 CVE-2021-37322: GCC c++filt v2.26 was discovered to contain a use-after-free vulnerability via the component cplus-d GCC c++filt v2.26 was discovered to contain a use-after-free vulnerability via the component cplus-dem.c.
nvdosv
CVE-2017-14729P4HIGHCVSS 7.8v2.292017-09-25
CVE-2017-14729 [HIGH] CWE-119 CVE-2017-14729: The *_get_synthetic_symtab functions in the Binary File Descriptor (BFD) library (aka libbfd), as di The *_get_synthetic_symtab functions in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, do not ensure a unique PLT entry for a symbol, which allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted ELF file
nvdosv
CVE-2017-17122P4HIGHCVSS 7.8v2.29.12017-12-04
CVE-2017-17122 [HIGH] CWE-190 CVE-2017-17122: The dump_relocs_in_section function in objdump.c in GNU Binutils 2.29.1 does not check for reloc cou The dump_relocs_in_section function in objdump.c in GNU Binutils 2.29.1 does not check for reloc count integer overflows, which allows remote attackers to cause a denial of service (excessive memory allocation, or heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted PE file.
nvdosv
CVE-2019-9070P4HIGHCVSS 7.8v2.322019-02-24
CVE-2019-9070 [HIGH] CWE-125 CVE-2019-9070: An issue was discovered in GNU libiberty, as distributed in GNU Binutils 2.32. It is a heap-based bu An issue was discovered in GNU libiberty, as distributed in GNU Binutils 2.32. It is a heap-based buffer over-read in d_expression_1 in cp-demangle.c after many recursive calls.
nvdosv
CVE-2017-7301P4HIGHCVSS 7.5v2.282017-03-29
CVE-2017-7301 [HIGH] CWE-20 CVE-2017-7301: The Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, has an a The Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, has an aout_link_add_symbols function in bfd/aoutx.h that has an off-by-one vulnerability because it does not carefully check the string offset. The vulnerability could lead to a GNU linker (ld) program crash.
nvdosv
CVE-2021-45078P3HIGHCVSS 7.8≤ 2.372021-12-15
CVE-2021-45078 [HIGH] CVE-2021-45078: stab_xcoff_builtin_type in stabs.c in GNU Binutils through 2.37 allows attackers to cause a denial o stab_xcoff_builtin_type in stabs.c in GNU Binutils through 2.37 allows attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact, as demonstrated by an out-of-bounds write. NOTE: this issue exists because of an incorrect fix for CVE-2018-12699.
nvdosv
CVE-2017-8395P4HIGHCVSS 7.5v2.282017-05-01
CVE-2017-8395 [HIGH] CWE-476 CVE-2017-8395: The Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, is vulne The Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, is vulnerable to an invalid write of size 8 because of missing a malloc() return-value check to see if memory had actually been allocated in the _bfd_generic_get_section_contents function. This vulnerability causes programs that conduct an analysis of binary prog
nvdosv
CVE-2022-45703P4HIGHCVSS 7.8fixed in 2.402023-08-22
CVE-2022-45703 [HIGH] CWE-787 CVE-2022-45703: Heap buffer overflow vulnerability in binutils readelf before 2.40 via function display_debug_sectio Heap buffer overflow vulnerability in binutils readelf before 2.40 via function display_debug_section in file readelf.c.
nvdosv
CVE-2023-1579P3HIGHCVSS 7.8v2.39vunknown2023-04-03
CVE-2023-1579 [HIGH] CWE-119 CVE-2023-1579: Heap based buffer overflow in binutils-gdb/bfd/libbfd.c in bfd_getl64. Heap based buffer overflow in binutils-gdb/bfd/libbfd.c in bfd_getl64.
nvdosv
CVE-2022-44840P4HIGHCVSS 7.8fixed in 2.402023-08-22
CVE-2022-44840 [HIGH] CWE-787 CVE-2022-44840: Heap buffer overflow vulnerability in binutils readelf before 2.40 via function find_section_in_set Heap buffer overflow vulnerability in binutils readelf before 2.40 via function find_section_in_set in file readelf.c.
nvdosv
CVE-2025-66862P4HIGHCVSS 7.5v2.262025-12-29
CVE-2025-66862 [HIGH] CWE-122 CVE-2025-66862: A buffer overflow vulnerability in function gnu_special in file cplus-dem.c in BinUtils 2.26 allows A buffer overflow vulnerability in function gnu_special in file cplus-dem.c in BinUtils 2.26 allows attackers to cause a denial of service via crafted PE file.
nvd
CVE-2017-12799P4HIGHCVSS 7.8v2.292017-08-10
CVE-2017-12799 [HIGH] CWE-119 CVE-2017-12799: The elf_read_notesfunction in bfd/elf.c in GNU Binutils 2.29 allows remote attackers to cause a deni The elf_read_notesfunction in bfd/elf.c in GNU Binutils 2.29 allows remote attackers to cause a denial of service (buffer overflow and application crash) or possibly have unspecified other impact via a crafted binary file.
nvdosv
CVE-2017-9755P4HIGHCVSS 7.8v2.282017-06-19
CVE-2017-9755 [HIGH] CWE-119 CVE-2017-9755: opcodes/i386-dis.c in GNU Binutils 2.28 does not consider the number of registers for bnd mode, whic opcodes/i386-dis.c in GNU Binutils 2.28 does not consider the number of registers for bnd mode, which allows remote attackers to cause a denial of service (buffer overflow and application crash) or possibly have unspecified other impact via a crafted binary file, as demonstrated by mishandling of this file during "objdump -D" execution.
nvdosv
CVE-2017-9754P4HIGHCVSS 7.8v2.282017-06-19
CVE-2017-9754 [HIGH] CWE-119 CVE-2017-9754: The process_otr function in bfd/versados.c in the Binary File Descriptor (BFD) library (aka libbfd), The process_otr function in bfd/versados.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, does not validate a certain offset, which allows remote attackers to cause a denial of service (buffer overflow and application crash) or possibly have unspecified other impact via a crafted binary file, as demonstrat
nvdosv
CVE-2018-18483P4HIGHCVSS 7.8v2.312018-10-18
CVE-2018-18483 [HIGH] CWE-190 CVE-2018-18483: The get_count function in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.31, allows The get_count function in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.31, allows remote attackers to cause a denial of service (malloc called with the result of an integer-overflowing calculation) or possibly have unspecified other impact via a crafted string, as demonstrated by c++filt.
nvdosv
CVE-2017-15996P4HIGHCVSS 7.8v2.292017-10-29
CVE-2017-15996 [HIGH] CWE-119 CVE-2017-15996: elfcomm.c in readelf in GNU Binutils 2.29 allows remote attackers to cause a denial of service (exce elfcomm.c in readelf in GNU Binutils 2.29 allows remote attackers to cause a denial of service (excessive memory allocation) or possibly have unspecified other impact via a crafted ELF file that triggers a "buffer overflow on fuzzed archive header," related to an uninitialized variable, an improper conditional jump, and the get_archive_member_name, pr
nvdosv
CVE-2017-15020P4HIGHCVSS 7.8v2.292017-10-05
CVE-2017-15020 [HIGH] CWE-125 CVE-2017-15020: dwarf1.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2. dwarf1.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, mishandles pointers, which allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted ELF file, related to parse_die and parse_line_table, as demonstrated by a parse_die heap-base
nvdosv
CVE-2017-16828P4HIGHCVSS 7.8v2.29.12017-11-15
CVE-2017-16828 [HIGH] CWE-190 CVE-2017-16828: The display_debug_frames function in dwarf.c in GNU Binutils 2.29.1 allows remote attackers to cause The display_debug_frames function in dwarf.c in GNU Binutils 2.29.1 allows remote attackers to cause a denial of service (integer overflow and heap-based buffer over-read, and application crash) or possibly have unspecified other impact via a crafted ELF file, related to print_debug_frame.
nvdosv
CVE-2017-7225P4HIGHCVSS 7.5v2.282017-03-22
CVE-2017-7225 [HIGH] CWE-476 CVE-2017-7225: The find_nearest_line function in addr2line in GNU Binutils 2.28 does not handle the case where the The find_nearest_line function in addr2line in GNU Binutils 2.28 does not handle the case where the main file name and the directory name are both empty, triggering a NULL pointer dereference and an invalid write, and leading to a program crash.
nvdosv
Gnu Binutils vulnerabilities | cvebase