PT-2026-23729 · Gnu · Binutils

Published

2026-03-06

·

Updated

2026-03-11

·

CVE-2025-69645

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Binutils version 2.44
Description Binutils objdump is susceptible to a denial-of-service condition when processing a specially crafted binary file containing improperly formatted DWARF debug information. A flaw in the handling of DWARF compilation units can cause an invalid offset size value to be used within the byte get little endian function, resulting in a program termination (SIGABRT). A local attacker can exploit this by providing a malicious input file.
Recommendations Versions prior to 2.44 are affected.

Exploit

Fix

DoS

Resource Exhaustion

Weakness Enumeration

Related Identifiers

AZL-79568
AZL-79592
CVE-2025-69645
ECHO-7B55-CAF2-9539
RHSA-2026:7098

Affected Products

Binutils