Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

msrc логотип

CVE-2026-6846

Опубликовано: 04 мая 2026
Источник: msrc
CVSS3: 7.8
EPSS Низкий

Описание

Binutils: binutils: arbitrary code execution via malformed xcoff object file processing

Обновления

ПродуктСтатьяОбновление
azl3 gdb 13.2-7 on Azure Linux 3.0
-
azl3 binutils 2.41-11 on Azure Linux 3.0
-
cbl2 binutils 2.37-20 on CBL-Mariner 2.0

Показывать по

EPSS

Процентиль: 7%
0.00171
Низкий

7.8 High

CVSS3

Связанные уязвимости

CVSS3: 7.8
ubuntu
5 месяцев назад

A flaw was found in binutils. A heap-buffer-overflow vulnerability exists when processing a specially crafted XCOFF (Extended Common Object File Format) object file during linking. A local attacker could trick a user into processing this malicious file, which could lead to arbitrary code execution, allowing the attacker to run unauthorized commands, or cause a denial of service, making the system unavailable.

CVSS3: 7.8
redhat
6 месяцев назад

A flaw was found in binutils. A heap-buffer-overflow vulnerability exists when processing a specially crafted XCOFF (Extended Common Object File Format) object file during linking. A local attacker could trick a user into processing this malicious file, which could lead to arbitrary code execution, allowing the attacker to run unauthorized commands, or cause a denial of service, making the system unavailable.

CVSS3: 7.8
nvd
5 месяцев назад

A flaw was found in binutils. A heap-buffer-overflow vulnerability exists when processing a specially crafted XCOFF (Extended Common Object File Format) object file during linking. A local attacker could trick a user into processing this malicious file, which could lead to arbitrary code execution, allowing the attacker to run unauthorized commands, or cause a denial of service, making the system unavailable.

CVSS3: 7.8
debian
5 месяцев назад

A flaw was found in binutils. A heap-buffer-overflow vulnerability exi ...

CVSS3: 7.8
github
5 месяцев назад

A flaw was found in binutils. A heap-buffer-overflow vulnerability exists when processing a specially crafted XCOFF (Extended Common Object File Format) object file during linking. A local attacker could trick a user into processing this malicious file, which could lead to arbitrary code execution, allowing the attacker to run unauthorized commands, or cause a denial of service, making the system unavailable.

EPSS

Процентиль: 7%
0.00171
Низкий

7.8 High

CVSS3