Gnu Binutils vulnerabilities
286 known vulnerabilities affecting gnu/binutils.
Total CVEs
286
CISA KEV
0
Public exploits
12
Exploited in wild
0
Severity breakdown
CRITICAL5HIGH121MEDIUM150LOW10
Vulnerabilities
Page 5 of 15
CVE-2017-8398P4HIGHCVSS 7.5v2.282017-05-01
CVE-2017-8398 [HIGH] CWE-119 CVE-2017-8398: dwarf.c in GNU Binutils 2.28 is vulnerable to an invalid read of size 1 during dumping of debug info
dwarf.c in GNU Binutils 2.28 is vulnerable to an invalid read of size 1 during dumping of debug information from a corrupt binary. This vulnerability causes programs that conduct an analysis of binary programs, such as objdump and readelf, to crash.
nvdosv
CVE-2017-7223P4HIGHCVSS 7.5v2.282017-03-22
CVE-2017-7223 [HIGH] CWE-119 CVE-2017-7223: GNU assembler in GNU Binutils 2.28 is vulnerable to a global buffer overflow (of size 1) while attem
GNU assembler in GNU Binutils 2.28 is vulnerable to a global buffer overflow (of size 1) while attempting to unget an EOF character from the input stream, potentially leading to a program crash.
nvdosv
CVE-2017-8394P4HIGHCVSS 7.5v2.282017-05-01
CVE-2017-8394 [HIGH] CWE-476 CVE-2017-8394: The Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, is vulne
The Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, is vulnerable to an invalid read of size 4 due to NULL pointer dereferencing of _bfd_elf_large_com_section. This vulnerability causes programs that conduct an analysis of binary programs using the libbfd library, such as objcopy, to crash.
nvdosv
CVE-2017-8392P4HIGHCVSS 7.5v2.282017-05-01
CVE-2017-8392 [HIGH] CWE-476 CVE-2017-8392: The Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, is vulne
The Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, is vulnerable to an invalid read of size 8 because of missing a check to determine whether symbols are NULL in the _bfd_dwarf2_find_nearest_line function. This vulnerability causes programs that conduct an analysis of binary programs using the libbfd library, suc
nvdosv
CVE-2025-66865P4HIGHCVSS 7.5v2.262025-12-29
CVE-2025-66865 [HIGH] CWE-121 CVE-2025-66865: An issue was discovered in function d_print_comp_inner in file cp-demangle.c in BinUtils 2.26 allows
An issue was discovered in function d_print_comp_inner in file cp-demangle.c in BinUtils 2.26 allows attackers to cause a denial of service via crafted PE file.
nvd
CVE-2025-66863P4HIGHCVSS 7.5v2.262025-12-29
CVE-2025-66863 [HIGH] CWE-400 CVE-2025-66863: An issue was discovered in function d_discriminator in file cp-demangle.c in BinUtils 2.26 allows at
An issue was discovered in function d_discriminator in file cp-demangle.c in BinUtils 2.26 allows attackers to cause a denial of service via crafted PE file.
nvd
CVE-2025-66866P4HIGHCVSS 7.5v2.262025-12-29
CVE-2025-66866 [HIGH] CWE-20 CVE-2025-66866: An issue was discovered in function d_abi_tags in file cp-demangle.c in BinUtils 2.26 allows attacke
An issue was discovered in function d_abi_tags in file cp-demangle.c in BinUtils 2.26 allows attackers to cause a denial of service via crafted PE file.
nvd
CVE-2025-66864P4HIGHCVSS 7.5v2.262025-12-29
CVE-2025-66864 [HIGH] CWE-20 CVE-2025-66864: An issue was discovered in function d_print_comp_inner in file cp-demangle.c in BinUtils 2.26 allows
An issue was discovered in function d_print_comp_inner in file cp-demangle.c in BinUtils 2.26 allows attackers to cause a denial of service via crafted PE file.
nvd
CVE-2017-15938P4HIGHCVSS 7.5v2.292017-10-27
CVE-2017-15938 [HIGH] CWE-119 CVE-2017-15938: dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.
dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, miscalculates DW_FORM_ref_addr die refs in the case of a relocatable object file, which allows remote attackers to cause a denial of service (find_abstract_instance_name invalid memory read, segmentation fault, and application crash).
nvdosv
CVE-2017-9751P4HIGHCVSS 7.8v2.282017-06-19
CVE-2017-9751 [HIGH] CWE-119 CVE-2017-9751: opcodes/rl78-decode.opc in GNU Binutils 2.28 has an unbounded GETBYTE macro, which allows remote att
opcodes/rl78-decode.opc in GNU Binutils 2.28 has an unbounded GETBYTE macro, which allows remote attackers to cause a denial of service (buffer overflow and application crash) or possibly have unspecified other impact via a crafted binary file, as demonstrated by mishandling of this file during "objdump -D" execution.
nvdosv
CVE-2017-9753P4HIGHCVSS 7.8v2.282017-06-19
CVE-2017-9753 [HIGH] CWE-119 CVE-2017-9753: The versados_mkobject function in bfd/versados.c in the Binary File Descriptor (BFD) library (aka li
The versados_mkobject function in bfd/versados.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, does not initialize a certain data structure, which allows remote attackers to cause a denial of service (buffer overflow and application crash) or possibly have unspecified other impact via a crafted binary fil
nvdosv
CVE-2021-20197P4MEDIUMCVSS 6.3≤ 2.35vbinutils 2.352021-03-26
CVE-2021-20197 [MEDIUM] CWE-59 CVE-2021-20197: There is an open race window when writing output in the following utilities in GNU binutils version
There is an open race window when writing output in the following utilities in GNU binutils version 2.35 and earlier:ar, objcopy, strip, ranlib. When these utilities are run as a privileged user (presumably as part of a script updating binaries across different users), an unprivileged user can trick these utilities into getting ownership of arbitrary
nvdosv
CVE-2017-13710P4HIGHCVSS 7.5v2.292017-08-27
CVE-2017-13710 [HIGH] CWE-476 CVE-2017-13710: The setup_group function in elf.c in the Binary File Descriptor (BFD) library (aka libbfd), as distr
The setup_group function in elf.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a group section that is too small.
nvdosv
CVE-2017-16832P4HIGHCVSS 7.8v2.29.12017-11-15
CVE-2017-16832 [HIGH] CWE-190 CVE-2017-16832: The pe_bfd_read_buildid function in peicode.h in the Binary File Descriptor (BFD) library (aka libbf
The pe_bfd_read_buildid function in peicode.h in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29.1, does not validate size and offset values in the data dictionary, which allows remote attackers to cause a denial of service (segmentation violation and application crash) or possibly have unspecified other impa
nvdosv
CVE-2017-16829P4HIGHCVSS 7.8v2.29.12017-11-15
CVE-2017-16829 [HIGH] CWE-125 CVE-2017-16829: The _bfd_elf_parse_gnu_properties function in elf-properties.c in the Binary File Descriptor (BFD) l
The _bfd_elf_parse_gnu_properties function in elf-properties.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29.1, does not prevent negative pointers, which allows remote attackers to cause a denial of service (out-of-bounds read and application crash) or possibly have unspecified other impact via a crafted
nvdosv
CVE-2017-12454P4HIGHCVSS 7.8≤ 2.292017-08-04
CVE-2017-12454 [HIGH] CWE-125 CVE-2017-12454: The _bfd_vms_slurp_egsd function in bfd/vms-alpha.c in the Binary File Descriptor (BFD) library (aka
The _bfd_vms_slurp_egsd function in bfd/vms-alpha.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29 and earlier, allows remote attackers to cause an arbitrary memory read via a crafted vms alpha file.
nvdosv
CVE-2025-1178P4MEDIUMCVSS 5.6v2.432025-02-11
CVE-2025-1178 [MEDIUM] CWE-119 CVE-2025-1178: A vulnerability was found in GNU Binutils 2.43. It has been declared as problematic. Affected by thi
A vulnerability was found in GNU Binutils 2.43. It has been declared as problematic. Affected by this vulnerability is the function bfd_putl64 of the file libbfd.c of the component ld. The manipulation leads to memory corruption. The attack can be launched remotely. The complexity of an attack is rather high. The exploitation appears to be difficult.
nvdosv
CVE-2017-9743P4HIGHCVSS 7.8v2.282017-06-19
CVE-2017-9743 [HIGH] CWE-119 CVE-2017-9743: The print_insn_score32 function in opcodes/score7-dis.c:552 in GNU Binutils 2.28 allows remote attac
The print_insn_score32 function in opcodes/score7-dis.c:552 in GNU Binutils 2.28 allows remote attackers to cause a denial of service (buffer overflow and application crash) or possibly have unspecified other impact via a crafted binary file, as demonstrated by mishandling of this file during "objdump -D" execution.
nvdosv
CVE-2017-9752P4HIGHCVSS 7.8v2.282017-06-19
CVE-2017-9752 [HIGH] CWE-119 CVE-2017-9752: bfd/vms-alpha.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binu
bfd/vms-alpha.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, allows remote attackers to cause a denial of service (buffer overflow and application crash) or possibly have unspecified other impact via a crafted binary file, as demonstrated by mishandling of this file in the _bfd_vms_get_value and _bfd_vms
nvdosv
CVE-2017-9744P4HIGHCVSS 7.8v2.282017-06-19
CVE-2017-9744 [HIGH] CWE-119 CVE-2017-9744: The sh_elf_set_mach_from_flags function in bfd/elf32-sh.c in the Binary File Descriptor (BFD) librar
The sh_elf_set_mach_from_flags function in bfd/elf32-sh.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, allows remote attackers to cause a denial of service (buffer overflow and application crash) or possibly have unspecified other impact via a crafted binary file, as demonstrated by mishandling of this f
nvdosv