PT-2025-29389 · Gnu+6 · Gnu Binutils+6

Arthurx

·

Published

2025-06-03

·

Updated

2026-04-20

·

CVE-2025-7545

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions GNU Binutils version 2.45
Description A problematic vulnerability exists in the copy section function within the binutils/objcopy.c file. This manipulation leads to a heap-based buffer overflow, requiring local access for exploitation. The exploit has been publicly disclosed and may be utilized.
Recommendations Apply the patch 08c3cbe5926e4d355b5cb70bbec2b1eeb40c2944 to resolve this issue.

Exploit

Fix

LPE

Buffer Overflow

Heap Based Buffer Overflow

Weakness Enumeration

Related Identifiers

AZL-65352
AZL-65384
BDU:2025-11462
CVE-2025-7545
ECHO-1875-6A17-6F9D
OESA-2025-1932
OESA-2025-2162
OESA-2025-2163
OESA-2025-2164
OESA-2025-2165
OESA-2025-2275
OPENSUSE-SU-2025:15651-1
OPENSUSE-SU-2025:20150-1
OPENSUSE-SU-2026:10330-1
OPENSUSE-SU-2026:10331-1
SUSE-SU-2025:21195-1
SUSE-SU-2025:21197-1
SUSE-SU-2025:4096-1
USN-7718-1
USN-7847-1
USN-7899-1

Affected Products

Astra Linux
Debian
Gnu Binutils
Linuxmint
Red Os
Suse
Ubuntu