PT-2025-41192 · Gnu+4 · Gnu Binutils+4
Yifan Zhang
·
Published
2025-09-18
·
Updated
2026-04-20
·
CVE-2025-11413
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
GNU Binutils versions prior to 2.46
Description
A flaw exists in the Linker component of GNU Binutils, specifically within the
elf link add object symbols function located in the bfd/elflink.c file. This issue leads to an out-of-bounds read condition. Local access is required for exploitation. The exploit has been publicly disclosed.Recommendations
Upgrade to version 2.46 or later to address this issue.
Exploit
Fix
Buffer Overflow
Out of bounds Read
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Debian
Gnu Binutils
Linuxmint
Suse
Ubuntu