Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2025-5245

Опубликовано: 27 мая 2025
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 4.3
CVSS3: 5.3

Описание

A vulnerability classified as critical has been found in GNU Binutils up to 2.44. This affects the function debug_type_samep of the file /binutils/debug.c of the component objdump. The manipulation leads to memory corruption. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used. It is recommended to apply a patch to fix this issue.

РелизСтатусПримечание
devel

not-affected

esm-infra-legacy/trusty

released

2.24-5ubuntu14.2+esm7
esm-infra/bionic

released

2.30-21ubuntu1~18.04.9+esm5
esm-infra/focal

released

2.34-6ubuntu1.11+esm1
esm-infra/xenial

released

2.26.1-1ubuntu1~16.04.8+esm13
focal

ignored

end of standard support, was needs-triage
jammy

released

2.38-4ubuntu2.10
noble

released

2.42-4ubuntu2.6
oracular

ignored

end of life, was needs-triage
plucky

released

2.44-3ubuntu1.1

Показывать по

EPSS

Процентиль: 5%
0.00022
Низкий

4.3 Medium

CVSS2

5.3 Medium

CVSS3

Связанные уязвимости

CVSS3: 4
redhat
8 месяцев назад

A vulnerability classified as critical has been found in GNU Binutils up to 2.44. This affects the function debug_type_samep of the file /binutils/debug.c of the component objdump. The manipulation leads to memory corruption. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used. It is recommended to apply a patch to fix this issue.

CVSS3: 5.3
nvd
8 месяцев назад

A vulnerability classified as critical has been found in GNU Binutils up to 2.44. This affects the function debug_type_samep of the file /binutils/debug.c of the component objdump. The manipulation leads to memory corruption. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used. It is recommended to apply a patch to fix this issue.

CVSS3: 5.3
msrc
6 месяцев назад

GNU Binutils objdump debug.c debug_type_samep memory corruption

CVSS3: 5.3
debian
8 месяцев назад

A vulnerability classified as critical has been found in GNU Binutils ...

CVSS3: 5.3
github
8 месяцев назад

A vulnerability classified as critical has been found in GNU Binutils up to 2.44. This affects the function debug_type_samep of the file /binutils/debug.c of the component objdump. The manipulation leads to memory corruption. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used. It is recommended to apply a patch to fix this issue.

EPSS

Процентиль: 5%
0.00022
Низкий

4.3 Medium

CVSS2

5.3 Medium

CVSS3