Gnu Binutils vulnerabilities
286 known vulnerabilities affecting gnu/binutils.
Total CVEs
286
CISA KEV
0
Public exploits
12
Exploited in wild
0
Severity breakdown
CRITICAL5HIGH121MEDIUM150LOW10
Vulnerabilities
Page 8 of 15
CVE-2005-4808P4HIGHCVSS 7.6fixed in 2.172005-12-31
CVE-2005-4808 [HIGH] CVE-2005-4808: Buffer overflow in reset_vars in config/tc-crx.c in the GNU as (gas) assembler in Free Software Foun
Buffer overflow in reset_vars in config/tc-crx.c in the GNU as (gas) assembler in Free Software Foundation GNU Binutils before 20050714 allows user-assisted attackers to have an unknown impact via a crafted .s file.
nvdosv
CVE-2025-11495P4MEDIUMCVSS 5.5v2.452025-10-08
CVE-2025-11495 [MEDIUM] CWE-119 CVE-2025-11495: A vulnerability was determined in GNU Binutils 2.45. The affected element is the function elf_x86_64
A vulnerability was determined in GNU Binutils 2.45. The affected element is the function elf_x86_64_relocate_section of the file elf64-x86-64.c of the component Linker. This manipulation causes heap-based buffer overflow. The attack can only be executed locally. The exploit has been publicly disclosed and may be utilized. Patch name: 6b21c8b2ecfef5
nvdosv
CVE-2025-1181P4MEDIUMCVSS 5.0v2.432025-02-11
CVE-2025-1181 [MEDIUM] CWE-119 CVE-2025-1181: A vulnerability classified as critical was found in GNU Binutils 2.43. This vulnerability affects th
A vulnerability classified as critical was found in GNU Binutils 2.43. This vulnerability affects the function _bfd_elf_gc_mark_rsec of the file bfd/elflink.c of the component ld. The manipulation leads to memory corruption. The attack can be initiated remotely. The complexity of an attack is rather high. The exploitation appears to be difficult. The
nvdosv
CVE-2023-25584P4HIGHCVSS 7.1fixed in 2.402023-09-14
CVE-2023-25584 [HIGH] CWE-125 CVE-2023-25584: An out-of-bounds read flaw was found in the parse_module function in bfd/vms-alpha.c in Binutils.
An out-of-bounds read flaw was found in the parse_module function in bfd/vms-alpha.c in Binutils.
nvdosv
CVE-2018-17794P4MEDIUMCVSS 6.5v2.312018-09-30
CVE-2018-17794 [MEDIUM] CWE-476 CVE-2018-17794: An issue was discovered in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.31. There
An issue was discovered in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.31. There is a NULL pointer dereference in work_stuff_copy_to_from when called from iterate_demangle_function.
nvdosv
CVE-2025-69652P4MEDIUMCVSS 6.2≤ 2.462026-03-06
CVE-2025-69652 [MEDIUM] CWE-460 CVE-2025-69652: GNU Binutils thru 2.46 readelf contains a vulnerability that leads to an abort (SIGABRT) when proces
GNU Binutils thru 2.46 readelf contains a vulnerability that leads to an abort (SIGABRT) when processing a crafted ELF binary with malformed DWARF abbrev or debug information. Due to incomplete state cleanup in process_debug_info(), an invalid debug_info_p state may propagate into DWARF attribute parsing routines. When certain malformed attributes r
nvd
CVE-2025-11412P4MEDIUMCVSS 5.5v2.452025-10-07
CVE-2025-11412 [MEDIUM] CWE-119 CVE-2025-11412: A vulnerability has been found in GNU Binutils 2.45. This impacts the function bfd_elf_gc_record_vte
A vulnerability has been found in GNU Binutils 2.45. This impacts the function bfd_elf_gc_record_vtentry of the file bfd/elflink.c of the component Linker. The manipulation leads to out-of-bounds read. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used. The identifier of the patch is 047435
nvdosv
CVE-2018-10373P4MEDIUMCVSS 6.5v2.302018-04-25
CVE-2018-10373 [MEDIUM] CWE-476 CVE-2018-10373: concat_filename in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed
concat_filename in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.30, allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted binary file, as demonstrated by nm-new.
nvdosv
CVE-2008-2310P4MEDIUMCVSS 6.8≥ 0, < 2.18.1~cvs20080103-12008-07-01
CVE-2008-2310 [MEDIUM] CVE-2008-2310: Format string vulnerability in c++filt in Apple Mac OS X 10
Format string vulnerability in c++filt in Apple Mac OS X 10.5 before 10.5.4 allows user-assisted attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted string in (1) C++ or (2) Java source code.
osv
CVE-2020-35494P4MEDIUMCVSS 6.1fixed in 2.34vbinutils 2.342021-01-04
CVE-2020-35494 [MEDIUM] CWE-908 CVE-2020-35494: There's a flaw in binutils /opcodes/tic4x-dis.c. An attacker who is able to submit a crafted input f
There's a flaw in binutils /opcodes/tic4x-dis.c. An attacker who is able to submit a crafted input file to be processed by binutils could cause usage of uninitialized memory. The highest threat is to application availability with a lower threat to data confidentiality. This flaw affects binutils versions prior to 2.34.
nvdosv
CVE-2025-69648P4MEDIUMCVSS 6.2≤ 2.45.12026-03-09
CVE-2025-69648 [MEDIUM] CWE-835 CVE-2025-69648: GNU Binutils thru 2.45.1 readelf contains a denial-of-service vulnerability when processing a crafte
GNU Binutils thru 2.45.1 readelf contains a denial-of-service vulnerability when processing a crafted binary with malformed DWARF .debug_rnglists data. A logic flaw in the DWARF parsing path causes readelf to repeatedly print the same warning message without making forward progress, resulting in a non-terminating output loop that requires manual int
nvd
CVE-2025-69647P4MEDIUMCVSS 6.2≤ 2.45.12026-03-09
CVE-2025-69647 [MEDIUM] CWE-835 CVE-2025-69647: GNU Binutils thru 2.45.1 readelf contains a denial-of-service vulnerability when processing a crafte
GNU Binutils thru 2.45.1 readelf contains a denial-of-service vulnerability when processing a crafted binary with malformed DWARF loclists data. A logic flaw in the DWARF parsing code can cause readelf to repeatedly print the same table output without making forward progress, resulting in an unbounded output loop that never terminates unless externa
nvd
CVE-2018-10534P4MEDIUMCVSS 5.5v2.302018-04-29
CVE-2018-10534 [MEDIUM] CWE-787 CVE-2018-10534: The _bfd_XX_bfd_copy_private_bfd_data_common function in peXXigen.c in the Binary File Descriptor (B
The _bfd_XX_bfd_copy_private_bfd_data_common function in peXXigen.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.30, processes a negative Data Directory size with an unbounded loop that increases the value of (external_IMAGE_DEBUG_DIRECTORY) *edd so that the address exceeds its own memory region, resulti
nvdosv
CVE-2025-11839P4MEDIUMCVSS 5.5v2.452025-10-16
CVE-2025-11839 [MEDIUM] CWE-252 CVE-2025-11839: A security flaw has been discovered in GNU Binutils 2.45. Impacted is the function tg_tag_type of th
A security flaw has been discovered in GNU Binutils 2.45. Impacted is the function tg_tag_type of the file prdbg.c. Performing a manipulation results in unchecked return value. The attack needs to be approached locally. The exploit has been released to the public and may be used for attacks.
nvdosv
CVE-2025-11413P4MEDIUMCVSS 5.5v2.452025-10-07
CVE-2025-11413 [MEDIUM] CWE-119 CVE-2025-11413: A vulnerability was found in GNU Binutils 2.45. Affected is the function elf_link_add_object_symbols
A vulnerability was found in GNU Binutils 2.45. Affected is the function elf_link_add_object_symbols of the file bfd/elflink.c of the component Linker. The manipulation results in out-of-bounds read. The attack needs to be approached locally. The exploit has been made public and could be used. Upgrading to version 2.46 is able to address this issue.
nvdosv
CVE-2019-17450P4MEDIUMCVSS 6.5v2.322019-10-10
CVE-2019-17450 [MEDIUM] CWE-674 CVE-2019-17450: find_abstract_instance in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as dist
find_abstract_instance in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.32, allows remote attackers to cause a denial of service (infinite recursion and application crash) via a crafted ELF file.
nvdosv
CVE-2018-18605P4MEDIUMCVSS 5.5v2.312018-10-23
CVE-2018-18605 [MEDIUM] CWE-125 CVE-2018-18605: A heap-based buffer over-read issue was discovered in the function sec_merge_hash_lookup in merge.c
A heap-based buffer over-read issue was discovered in the function sec_merge_hash_lookup in merge.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.31, because _bfd_add_merge_section mishandles section merges when size is not a multiple of entsize. A specially crafted ELF allows remote attackers to cause a d
nvdosv
CVE-2019-14250P4MEDIUMCVSS 5.5v2.322019-07-24
CVE-2019-14250 [MEDIUM] CWE-190 CVE-2019-14250: An issue was discovered in GNU libiberty, as distributed in GNU Binutils 2.32. simple_object_elf_mat
An issue was discovered in GNU libiberty, as distributed in GNU Binutils 2.32. simple_object_elf_match in simple-object-elf.c does not check for a zero shstrndx value, leading to an integer overflow and resultant heap-based buffer overflow.
nvdosv
CVE-2018-12641P4MEDIUMCVSS 5.5v2.302018-06-22
CVE-2018-12641 [MEDIUM] CWE-400 CVE-2018-12641: An issue was discovered in arm_pt in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.
An issue was discovered in arm_pt in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.30. Stack Exhaustion occurs in the C++ demangling functions provided by libiberty, and there are recursive stack frames: demangle_arm_hp_template, demangle_class_name, demangle_fund_type, do_type, do_arg, demangle_args, and demangle_nested_args. This
nvdosv
CVE-2019-12972P4MEDIUMCVSS 5.5v2.322019-06-26
CVE-2019-12972 [MEDIUM] CWE-125 CVE-2019-12972: An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in
An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.32. There is a heap-based buffer over-read in _bfd_doprnt in bfd.c because elf_object_p in elfcode.h mishandles an e_shstrndx section of type SHT_GROUP by omitting a trailing '\0' character.
nvdosv