📦 Binutils

by Gnu

🔍 What is Binutils?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-66862

HIGH CVSS 7.5 Dec 29, 2025

A buffer overflow vulnerability in the gnu_special function of BinUtils' cplus-dem.c file allows attackers to crash applications by processing specially crafted PE files. This affects systems using Bi...

CVE-2025-66863

HIGH CVSS 7.5 Dec 29, 2025

A vulnerability in BinUtils' cp-demangle.c function allows attackers to cause denial of service through crafted PE files. This affects systems using BinUtils for binary analysis or development. The is...

CVE-2025-66864

HIGH CVSS 7.5 Dec 29, 2025

A vulnerability in BinUtils' cp-demangle.c allows attackers to cause denial of service through crafted PE files. This affects systems using BinUtils for binary analysis or development. The issue stems...

CVE-2025-66865

HIGH CVSS 7.5 Dec 29, 2025

A stack-based buffer overflow vulnerability exists in the cp-demangle.c file of BinUtils 2.26, specifically in the d_print_comp_inner function. Attackers can exploit this by crafting a malicious PE fi...

CVE-2025-66866

HIGH CVSS 7.5 Dec 29, 2025

A vulnerability in BinUtils' cp-demangle.c allows attackers to cause denial of service through crafted PE files. This affects systems using BinUtils for binary analysis or development. The issue stems...

CVE-2022-44840

HIGH CVSS 7.8 Aug 22, 2023

A heap buffer overflow vulnerability in binutils readelf allows attackers to execute arbitrary code or cause denial of service by providing specially crafted ELF files. This affects systems using read...

CVE-2022-47695

HIGH CVSS 7.8 Aug 22, 2023

A vulnerability in Binutils objdump allows attackers to cause denial of service or potentially other impacts via a specific function in match-o.c. This affects systems using vulnerable versions of Bin...

CVE-2021-46174

HIGH CVSS 7.5 Aug 22, 2023

CVE-2021-46174 is a heap-based buffer overflow vulnerability in the bfd_getl32 function of Binutils objdump version 2.37. This vulnerability allows attackers to execute arbitrary code or cause denial ...

CVE-2020-35342

HIGH CVSS 7.5 Aug 22, 2023

CVE-2020-35342 is an uninitialized heap vulnerability in GNU Binutils' tic4x disassembler that allows attackers to leak sensitive information from memory. This affects systems using Binutils for binar...

CVE-2023-1579

HIGH CVSS 7.8 Apr 3, 2023

CVE-2023-1579 is a heap-based buffer overflow vulnerability in the bfd_getl64 function of binutils-gdb's Binary File Descriptor (BFD) library. This vulnerability allows attackers to execute arbitrary ...

CVE-2021-45078

HIGH CVSS 7.8 Dec 15, 2021

This vulnerability in GNU Binutils allows attackers to trigger a heap-based buffer overflow via the stab_xcoff_builtin_type function in stabs.c. It can cause denial of service or potentially allow arb...

CVE-2021-37322

HIGH CVSS 7.8 Nov 18, 2021

CVE-2021-37322 is a use-after-free vulnerability in GCC's c++filt utility (version 2.26) that can lead to arbitrary code execution or denial of service. This affects systems where c++filt processes un...

CVE-2021-3530

HIGH CVSS 7.5 Jun 2, 2021

CVE-2021-3530 is a stack exhaustion vulnerability in GNU libiberty's rust-demangle.c that allows crafted symbols to cause denial of service through application crashes. This affects systems using GNU ...

CVE-2021-20294

HIGH CVSS 7.8 Apr 29, 2021

A stack buffer overflow vulnerability in binutils readelf 2.35 allows attackers to execute arbitrary code by tricking users into processing malicious files. This affects systems where readelf is used ...

CVE-2025-11083

MEDIUM CVSS 5.3 Sep 27, 2025

A heap-based buffer overflow vulnerability in GNU Binutils' linker component allows local attackers to execute arbitrary code or cause denial of service. This affects systems using Binutils 2.45 for c...

CVE-2025-11082

MEDIUM CVSS 5.3 Sep 27, 2025

A heap-based buffer overflow vulnerability in GNU Binutils' linker component allows local attackers to execute arbitrary code or cause denial of service. This affects systems using Binutils 2.45 for c...

CVE-2025-7546

MEDIUM CVSS 5.3 Jul 13, 2025

This vulnerability in GNU Binutils 2.45 allows an attacker to trigger an out-of-bounds write in the bfd_elf_set_group_contents function. Attackers with local access could potentially crash application...

CVE-2025-1182

MEDIUM CVSS 5.0 Feb 11, 2025

A critical memory corruption vulnerability in GNU Binutils' linker (ld) allows remote attackers to potentially execute arbitrary code or cause denial of service. This affects systems using GNU Binutil...

CVE-2025-1181

MEDIUM CVSS 5.0 Feb 11, 2025

A critical memory corruption vulnerability in GNU Binutils' linker component (ld) allows remote attackers to potentially execute arbitrary code or cause denial of service. This affects systems using B...

CVE-2025-1178

MEDIUM CVSS 5.6 Feb 11, 2025

A memory corruption vulnerability exists in GNU Binutils' bfd_putl64 function within the ld component. This allows remote attackers to potentially execute arbitrary code or cause denial of service by ...

CVE-2025-1176

MEDIUM CVSS 5.0 Feb 11, 2025

A critical heap-based buffer overflow vulnerability in GNU Binutils' linker component (ld) allows remote attackers to potentially execute arbitrary code or cause denial of service. This affects system...

CVE-2025-0840

MEDIUM CVSS 5.0 Jan 29, 2025

A stack-based buffer overflow vulnerability exists in GNU Binutils' objdump tool when processing specially crafted input. This could allow remote attackers to potentially execute arbitrary code or cau...

CVE-2025-66861

LOW CVSS 2.5 Dec 29, 2025

A vulnerability in BinUtils' cp-demangle.c function allows attackers to cause denial of service through specially crafted PE files. This affects systems using BinUtils for binary analysis or developme...