Vulnerabilities > GNU > Binutils > 2.38.50

DATE CVE VULNERABILITY TITLE RISK
2025-01-29 CVE-2025-0840 Stack-based Buffer Overflow vulnerability in GNU Binutils
A vulnerability, which was classified as problematic, was found in GNU Binutils up to 2.43.
network
high complexity
gnu CWE-121
7.5
2023-09-14 CVE-2023-25584 Out-of-bounds Read vulnerability in GNU Binutils
An out-of-bounds read flaw was found in the parse_module function in bfd/vms-alpha.c in Binutils.
local
low complexity
gnu CWE-125
7.1
2023-08-22 CVE-2022-35205 Reachable Assertion vulnerability in GNU Binutils 2.38.50
An issue was discovered in Binutils readelf 2.38.50, reachable assertion failure in function display_debug_names allows attackers to cause a denial of service.
local
low complexity
gnu CWE-617
5.5
2023-08-22 CVE-2022-35206 NULL Pointer Dereference vulnerability in GNU Binutils 2.38.50
Null pointer dereference vulnerability in Binutils readelf 2.38.50 via function read_and_display_attr_value in file dwarf.c.
local
low complexity
gnu CWE-476
5.5
2023-08-22 CVE-2022-44840 Out-of-bounds Write vulnerability in GNU Binutils
Heap buffer overflow vulnerability in binutils readelf before 2.40 via function find_section_in_set in file readelf.c.
local
low complexity
gnu CWE-787
7.8
2023-08-22 CVE-2022-45703 Out-of-bounds Write vulnerability in GNU Binutils
Heap buffer overflow vulnerability in binutils readelf before 2.40 via function display_debug_section in file readelf.c.
local
low complexity
gnu CWE-787
7.8
2023-08-22 CVE-2022-47673 Out-of-bounds Read vulnerability in GNU Binutils
An issue was discovered in Binutils addr2line before 2.39.3, function parse_module contains multiple out of bound reads which may cause a denial of service or other unspecified impacts.
local
low complexity
gnu CWE-125
7.8
2023-08-22 CVE-2022-47695 Unspecified vulnerability in GNU Binutils
An issue was discovered Binutils objdump before 2.39.3 allows attackers to cause a denial of service or other unspecified impacts via function bfd_mach_o_get_synthetic_symtab in match-o.c.
local
low complexity
gnu
7.8
2023-08-22 CVE-2022-47696 Unspecified vulnerability in GNU Binutils
An issue was discovered Binutils objdump before 2.39.3 allows attackers to cause a denial of service or other unspecified impacts via function compare_symbols.
local
low complexity
gnu
7.8
2023-08-22 CVE-2022-48063 Resource Exhaustion vulnerability in GNU Binutils
GNU Binutils before 2.40 was discovered to contain an excessive memory consumption vulnerability via the function load_separate_debug_files at dwarf2.c.
local
low complexity
gnu CWE-400
5.5