PT-2025-41306 · Gnu+4 · Gnu Binutils+4
Yifan Zhang
·
Published
2025-09-30
·
Updated
2026-04-20
·
CVE-2025-11495
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
GNU Binutils version 2.45
Description
A heap-based buffer overflow exists in the Linker component of GNU Binutils. The issue is located in the
elf x86 64 relocate section function within the elf64-x86-64.c file. This manipulation can be exploited locally. The exploit has been publicly disclosed.Recommendations
Deploy patch 6b21c8b2ecfef5c95142cbc2c32f185cb1c26ab0.
Exploit
Fix
Buffer Overflow
Heap Based Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Debian
Gnu Binutils
Linuxmint
Suse
Ubuntu