PT-2025-30997 · Gnu+3 · Gnu Binutils+3
Arthurx
·
Published
2025-01-01
·
Updated
2026-04-20
·
CVE-2025-8224
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
GNU Binutils version 2.44
Description
A problematic issue exists in the BFD Library component of GNU Binutils. The
bfd elf get str section function within the bfd/elf.c file is susceptible to a null pointer dereference. Local access is required for exploitation. The issue has been publicly disclosed.Recommendations
Apply the patch db856d41004301b3a56438efd957ef5cabb91530 to resolve the issue.
Exploit
Fix
Improper Resource Release
NULL Pointer Dereference
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Alt Linux
Debian
Gnu Binutils
Suse