CVE-2025-5245

Name
CVE-2025-5245
Description
A vulnerability classified as critical has been found in GNU Binutils up to 2.44. This affects the function debug_type_samep of the file /binutils/debug.c of the component objdump. The manipulation leads to memory corruption. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used. It is recommended to apply a patch to fix this issue.
NVD Severity
medium
Other trackers
Mailing lists
Exploits
Forges
GitHub (code, issues), Aports (code, issues)

References

Type URI
exploit https://sourceware.org/bugzilla/attachment.cgi?id=16004
issue-tracking https://sourceware.org/bugzilla/show_bug.cgi?id=32829
patch https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=6c3458a8b7ee7d39f070c7b2350851cb2110c65a
signature https://vuldb.com/?ctiid.310347
vdb-entry https://vuldb.com/?id.310347
third-party-advisory https://vuldb.com/?submit.584635
broken-link https://www.gnu.org/

Match rules

CPE URI Source package Min version Max version
binutils == 2.0 == 2.0
binutils == 2.1 == 2.1
binutils == 2.2 == 2.2
binutils == 2.3 == 2.3
binutils == 2.4 == 2.4
binutils == 2.5 == 2.5
binutils == 2.6 == 2.6
binutils == 2.7 == 2.7
binutils == 2.8 == 2.8
binutils == 2.9 == 2.9
binutils == 2.10 == 2.10
binutils == 2.11 == 2.11
binutils == 2.12 == 2.12
binutils == 2.13 == 2.13
binutils == 2.14 == 2.14
binutils == 2.15 == 2.15
binutils == 2.16 == 2.16
binutils == 2.17 == 2.17
binutils == 2.18 == 2.18
binutils == 2.19 == 2.19
binutils == 2.20 == 2.20
binutils == 2.21 == 2.21
binutils == 2.22 == 2.22
binutils == 2.23 == 2.23
binutils == 2.24 == 2.24
binutils == 2.25 == 2.25
binutils == 2.26 == 2.26
binutils == 2.27 == 2.27
binutils == 2.28 == 2.28
binutils == 2.29 == 2.29
binutils == 2.30 == 2.30
binutils == 2.31 == 2.31
binutils == 2.32 == 2.32
binutils == 2.33 == 2.33
binutils == 2.34 == 2.34
binutils == 2.35 == 2.35
binutils == 2.36 == 2.36
binutils == 2.37 == 2.37
binutils == 2.38 == 2.38
binutils == 2.39 == 2.39
binutils == 2.40 == 2.40
binutils == 2.41 == 2.41
binutils == 2.42 == 2.42
binutils == 2.43 == 2.43
binutils == 2.44 == 2.44

Vulnerable and fixed packages

Source package Branch Version Maintainer Status
binutils edge-main 2.44-r0 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable