PT-2025-42480 · Gnu+4 · Gnu Binutils+4

Jjleo

·

Published

2025-10-16

·

Updated

2026-04-20

·

CVE-2025-11840

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions GNU Binutils version 2.45
Description A flaw exists in GNU Binutils 2.45 within the vfinfo function located in the ldmisc.c file. This can lead to an out-of-bounds read condition when manipulation occurs. The issue is locally exploitable and the exploit has been publicly released.
Recommendations Apply patch 16357 to resolve this issue.

Exploit

Fix

DoS

Buffer Overflow

Out of bounds Read

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-02741
CVE-2025-11840
ECHO-D807-1CAD-5F60
OESA-2025-2624
OESA-2025-2625
OESA-2025-2626
OESA-2025-2627
OESA-2025-2628
OESA-2025-2629
RHSA-2026:7098
USN-7899-1

Affected Products

Debian
Gnu Binutils
Linuxmint
Red Os
Ubuntu