Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2025-11083

Опубликовано: 27 сент. 2025
Источник: ubuntu
Приоритет: medium
CVSS2: 4.3
CVSS3: 5.3

Описание

A vulnerability has been found in GNU Binutils 2.45. The affected element is the function elf_swap_shdr in the library bfd/elfcode.h of the component Linker. The manipulation leads to heap-based buffer overflow. The attack must be carried out locally. The exploit has been disclosed to the public and may be used. The identifier of the patch is 9ca499644a21ceb3f946d1c179c38a83be084490. To fix this issue, it is recommended to deploy a patch. The code maintainer replied with "[f]ixed for 2.46".

РелизСтатусПримечание
devel

not-affected

2.45.50.20251125-1ubuntu1
esm-infra-legacy/trusty

ignored

changes too intrusive
esm-infra/bionic

ignored

changes too intrusive
esm-infra/focal

ignored

changes too intrusive
esm-infra/xenial

ignored

changes too intrusive
jammy

released

2.38-4ubuntu2.10
noble

released

2.42-4ubuntu2.6
plucky

released

2.44-3ubuntu1.1
questing

released

2.45-7ubuntu1.2
upstream

released

2.46

Показывать по

4.3 Medium

CVSS2

5.3 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.3
redhat
6 месяцев назад

A vulnerability has been found in GNU Binutils 2.45. The affected element is the function elf_swap_shdr in the library bfd/elfcode.h of the component Linker. The manipulation leads to heap-based buffer overflow. The attack must be carried out locally. The exploit has been disclosed to the public and may be used. The identifier of the patch is 9ca499644a21ceb3f946d1c179c38a83be084490. To fix this issue, it is recommended to deploy a patch. The code maintainer replied with "[f]ixed for 2.46".

CVSS3: 5.3
nvd
6 месяцев назад

A vulnerability has been found in GNU Binutils 2.45. The affected element is the function elf_swap_shdr in the library bfd/elfcode.h of the component Linker. The manipulation leads to heap-based buffer overflow. The attack must be carried out locally. The exploit has been disclosed to the public and may be used. The identifier of the patch is 9ca499644a21ceb3f946d1c179c38a83be084490. To fix this issue, it is recommended to deploy a patch. The code maintainer replied with "[f]ixed for 2.46".

CVSS3: 5.5
msrc
6 месяцев назад

GNU Binutils Linker elfcode.h elf_swap_shdr heap-based overflow

CVSS3: 5.3
debian
6 месяцев назад

A vulnerability has been found in GNU Binutils 2.45. The affected elem ...

rocky
около 2 месяцев назад

Moderate: gcc-toolset-14-binutils security update

4.3 Medium

CVSS2

5.3 Medium

CVSS3