Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2025-11840

Опубликовано: 16 окт. 2025
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 1.7
CVSS3: 3.3

Описание

A weakness has been identified in GNU Binutils 2.45. The affected element is the function vfinfo of the file ldmisc.c. Executing a manipulation can lead to out-of-bounds read. The attack can only be executed locally. The exploit has been made available to the public and could be used for attacks. This patch is called 16357. It is best practice to apply a patch to resolve this issue.

РелизСтатусПримечание
devel

not-affected

2.45.50.20251125-1ubuntu1
esm-infra-legacy/trusty

released

2.24-5ubuntu14.2+esm7
esm-infra-legacy/xenial

released

2.26.1-1ubuntu1~16.04.8+esm13
esm-infra/bionic

released

2.30-21ubuntu1~18.04.9+esm5
esm-infra/focal

released

2.34-6ubuntu1.11+esm1
esm-infra/xenial

released

2.26.1-1ubuntu1~16.04.8+esm13
jammy

released

2.38-4ubuntu2.11
noble

released

2.42-4ubuntu2.7
plucky

released

2.44-3ubuntu1.2
questing

released

2.45-7ubuntu1.1

Показывать по

EPSS

Процентиль: 17%
0.00256
Низкий

1.7 Low

CVSS2

3.3 Low

CVSS3

Связанные уязвимости

CVSS3: 3.3
redhat
10 месяцев назад

A weakness has been identified in GNU Binutils 2.45. The affected element is the function vfinfo of the file ldmisc.c. Executing a manipulation can lead to out-of-bounds read. The attack can only be executed locally. The exploit has been made available to the public and could be used for attacks. This patch is called 16357. It is best practice to apply a patch to resolve this issue.

CVSS3: 3.3
nvd
10 месяцев назад

A weakness has been identified in GNU Binutils 2.45. The affected element is the function vfinfo of the file ldmisc.c. Executing a manipulation can lead to out-of-bounds read. The attack can only be executed locally. The exploit has been made available to the public and could be used for attacks. This patch is called 16357. It is best practice to apply a patch to resolve this issue.

msrc
12 дней назад

GNU Binutils ldmisc.c vfinfo out-of-bounds

CVSS3: 3.3
debian
10 месяцев назад

A weakness has been identified in GNU Binutils 2.45. The affected elem ...

CVSS3: 3.3
redos
6 месяцев назад

Уязвимость binutils

EPSS

Процентиль: 17%
0.00256
Низкий

1.7 Low

CVSS2

3.3 Low

CVSS3