PT-2025-6051 · Gnu+3 · Gnu Binutils+3
Wenjusun
·
Published
2025-02-05
·
Updated
2026-04-20
·
CVE-2025-1179
CVSS v3.1
7.5
High
| Vector | AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
GNU Binutils version 2.43
Description
A critical issue has been found in GNU Binutils, affecting the function
bfd putl64 of the file bfd/libbfd.c of the component ld. This issue leads to memory corruption and can be exploited remotely, although the complexity of an attack is rather high and the exploitation is known to be difficult.Recommendations
For GNU Binutils version 2.43, upgrade to version 2.44 to address this issue. As a temporary workaround, consider restricting the use of the
bfd putl64 function until a patch is available.Exploit
Fix
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Astra Linux
Debian
Gnu Binutils
Suse