Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2025-1181

Опубликовано: 11 фев. 2025
Источник: ubuntu
Приоритет: medium
CVSS2: 5.1
CVSS3: 5

Описание

A vulnerability classified as critical was found in GNU Binutils 2.43. This vulnerability affects the function _bfd_elf_gc_mark_rsec of the file bfd/elflink.c of the component ld. The manipulation leads to memory corruption. The attack can be initiated remotely. The complexity of an attack is rather high. The exploitation appears to be difficult. The exploit has been disclosed to the public and may be used. The name of the patch is 931494c9a89558acb36a03a340c01726545eef24. It is recommended to apply a patch to fix this issue.

РелизСтатусПримечание
devel

not-affected

2.45-8
esm-infra-legacy/trusty

released

2.24-5ubuntu14.2+esm7
esm-infra/bionic

released

2.30-21ubuntu1~18.04.9+esm5
esm-infra/focal

released

2.34-6ubuntu1.11+esm1
esm-infra/xenial

released

2.26.1-1ubuntu1~16.04.8+esm13
focal

ignored

end of standard support, was needed
jammy

released

2.38-4ubuntu2.8
noble

released

2.42-4ubuntu2.5
oracular

released

2.43.1-4ubuntu1.2
plucky

not-affected

2.44-3ubuntu1.1

Показывать по

5.1 Medium

CVSS2

5 Medium

CVSS3

Связанные уязвимости

CVSS3: 5
redhat
12 месяцев назад

A vulnerability classified as critical was found in GNU Binutils 2.43. This vulnerability affects the function _bfd_elf_gc_mark_rsec of the file bfd/elflink.c of the component ld. The manipulation leads to memory corruption. The attack can be initiated remotely. The complexity of an attack is rather high. The exploitation appears to be difficult. The exploit has been disclosed to the public and may be used. The name of the patch is 931494c9a89558acb36a03a340c01726545eef24. It is recommended to apply a patch to fix this issue.

CVSS3: 5
nvd
12 месяцев назад

A vulnerability classified as critical was found in GNU Binutils 2.43. This vulnerability affects the function _bfd_elf_gc_mark_rsec of the file bfd/elflink.c of the component ld. The manipulation leads to memory corruption. The attack can be initiated remotely. The complexity of an attack is rather high. The exploitation appears to be difficult. The exploit has been disclosed to the public and may be used. The name of the patch is 931494c9a89558acb36a03a340c01726545eef24. It is recommended to apply a patch to fix this issue.

CVSS3: 5
msrc
12 месяцев назад

Описание отсутствует

CVSS3: 5
debian
12 месяцев назад

A vulnerability classified as critical was found in GNU Binutils 2.43. ...

CVSS3: 5
github
12 месяцев назад

A vulnerability classified as critical was found in GNU Binutils 2.43. This vulnerability affects the function _bfd_elf_gc_mark_rsec of the file bfd/elflink.c of the component ld. The manipulation leads to memory corruption. The attack can be initiated remotely. The complexity of an attack is rather high. The exploitation appears to be difficult. The exploit has been disclosed to the public and may be used. The name of the patch is 931494c9a89558acb36a03a340c01726545eef24. It is recommended to apply a patch to fix this issue.

5.1 Medium

CVSS2

5 Medium

CVSS3