漏洞概述 漏洞编号:Bug 2513754 (CVE-2026-19582) 漏洞类型:栈缓冲区溢出 受影响组件:GNU Binutils 中的 和 函数 漏洞描述:在 binutils 2.46.1 中, 和 函数存在漏洞,攻击者可以通过本地访问或社会工程学手段诱使受害者运行 crafted PE 文件,从而执行恶意代码。 影响范围 产品:Security Response 组件:vulnerability 版本:未指定 硬件:所有 操作系统:Linux 优先级:中等 严重程度:中等 修复方案 修复状态:未修复 报告时间:2026-08-11 03:18 UTC by OSIDB Bzimport 修改时间:2026-08-20 04:53 UTC CC 列表:12 用户(详情见链接) 附加信息 关键词:Security 状态:NEW 别名:CVE-2026-19582 目标里程碑:无 分配给:Product Security QA 联系人:无 文档联系人:无 URL:无 白板:无 依赖项:2519346, 2519347, 2519348, 2519349, 2519351, 2519352, 2519353, 2519354, 2519355, 2519356, 2519357, 2519361, 2519362, 2519363, 2519364, 2519365, 2519366, 2519367 阻塞项:无 附件 描述:2026-08-11 03:18:30 UTC 内容:There's a flaw in binutils 2.46.1 in and functions by which an attacker with local access or who does not have local access but social engineers a victim to run binutils on a crafted PE file, can execute malicious code. 备注 需要登录才能评论或对此漏洞进行更改。