PT-2025-41192 · Gnu+4 · Gnu Binutils+4

Yifan Zhang

·

Published

2025-09-18

·

Updated

2026-04-20

·

CVE-2025-11413

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions GNU Binutils versions prior to 2.46
Description A flaw exists in the Linker component of GNU Binutils, specifically within the elf link add object symbols function located in the bfd/elflink.c file. This issue leads to an out-of-bounds read condition. Local access is required for exploitation. The exploit has been publicly disclosed.
Recommendations Upgrade to version 2.46 or later to address this issue.

Exploit

Fix

Buffer Overflow

Out of bounds Read

Weakness Enumeration

Related Identifiers

BDU:2025-16074
CVE-2025-11413
ECHO-14DE-4BF8-39BB
OPENSUSE-SU-2025:15651-1
OPENSUSE-SU-2025:20150-1
RHSA-2026:7098
SUSE-SU-2025:21195-1
SUSE-SU-2025:21197-1
SUSE-SU-2025:4096-1
USN-7919-1

Affected Products

Debian
Gnu Binutils
Linuxmint
Suse
Ubuntu