Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

binutils — Vulnerabilities & Security Advisories 60

All 60 CVE vulnerabilities found in binutils, with AI-generated Chinese analysis, references, and POCs.

This page aggregates security vulnerabilities affecting the binutils package, a collection of binary tools maintained by the Free Software Foundation. It collects reported defects, memory safety errors, and parser bugs identified over a defined historical period. Readers can use this aggregation to track the vendor's published advisories, analyze specific weakness classes, and review the complete vulnerability history for the binutils suite. The entries focus on technical details such as overflow conditions, type confusion, and improper input validation found across the GNU assembler, linker, and archive utilities. This resource serves as a centralized index for researchers, auditors, and system administrators who need to assess the security posture of their development toolchains. It excludes unverified reports and prioritizes data from official vendor announcements and curated databases. The time range spans from the earliest indexed release through the most recent patch updates. No individual CVE identifiers are listed; instead, the page groups incidents by weakness type and product component to facilitate pattern recognition for long-term trend analysis.

Vendor: n/a

CVE ID Title CVSS Severity Published
CVE-2025-1181 GNU Binutils ld elflink.c _bfd_elf_gc_mark_rsec memory corruption CWE-119 5.0 Medium 2025-02-11
CVE-2025-1180 GNU Binutils ld elf-eh-frame.c _bfd_elf_write_section_eh_frame memory corruption CWE-119 3.1 Low 2025-02-11
CVE-2025-1179 GNU Binutils ld libbfd.c bfd_putl64 memory corruption CWE-119 5.0 Medium 2025-02-11
CVE-2025-1178 GNU Binutils ld libbfd.c bfd_putl64 memory corruption CWE-119 5.6 Medium 2025-02-11
CVE-2025-1176 GNU Binutils ld elflink.c _bfd_elf_gc_mark_rsec heap-based overflow CWE-122 5.0 Medium 2025-02-11
CVE-2025-1153 GNU Binutils format.c bfd_set_format memory corruption CWE-119 3.1 Low 2025-02-10
CVE-2025-1152 GNU Binutils ld xstrdup.c xstrdup memory leak CWE-401 3.1 Low 2025-02-10
CVE-2025-1151 GNU Binutils ld xmemdup.c xmemdup memory leak CWE-401 3.1 Low 2025-02-10
CVE-2025-1150 GNU Binutils ld libbfd.c bfd_malloc memory leak CWE-401 3.1 Low 2025-02-10
CVE-2025-1149 GNU Binutils ld xmalloc.c xstrdup memory leak CWE-401 3.1 Low 2025-02-10
CVE-2025-1148 GNU Binutils ld ldelfgen.c link_order_scan memory leak CWE-401 3.1 Low 2025-02-10
CVE-2025-1147 GNU Binutils nm nm.c internal_strlen buffer overflow CWE-120 3.1 Low 2025-02-10
CVE-2025-0840 GNU Binutils objdump.c disassemble_bytes stack-based overflow CWE-121 5.0 Medium 2025-01-29
CVE-2023-25584 Out of bounds read in parse_module function in bfd/vms-alpha.c CWE-125 6.3 Medium 2023-09-14
CVE-2023-25585 Field `file_table` of `struct module *module` is uninitialized CWE-457 4.7 Medium 2023-09-14
CVE-2023-25586 Local variable `ch_type` in function `bfd_init_section_decompress_status` can be uninitialized CWE-457 4.7 Medium 2023-09-14
CVE-2023-25588 Field `the_bfd` of `asymbol` is uninitialized in function `bfd_mach_o_get_synthetic_symtab` CWE-457 4.7 Medium 2023-09-14
CVE-2023-1972 GNU Binutils 缓冲区错误漏洞 CWE-119 5.5 - 2023-05-17
CVE-2023-1579 GNU Binutils 缓冲区错误漏洞 CWE-119 7.8 - 2023-04-03
CVE-2022-4285 Fedora 代码问题漏洞 CWE-476 5.5 - 2023-01-27
CVE-2021-3530 GNU Binutils 安全漏洞 CWE-674 7.5 - 2021-06-02
CVE-2021-3549 GNU Binutils 缓冲区错误漏洞 CWE-119 8.1 - 2021-05-26
CVE-2021-20294 binutils readelf 缓冲区错误漏洞 CWE-787 7.8 - 2021-04-29
CVE-2021-20197 GNU Binutils 后置链接漏洞 CWE-59 6.7 - 2021-03-26
CVE-2021-20284 GNU Binutils 缓冲区错误漏洞 CWE-119 5.5 - 2021-03-26
CVE-2020-35507 GNU Binutils 代码问题漏洞 CWE-476 5.5 - 2021-01-04
CVE-2020-35496 GNU Binutils 代码问题漏洞 CWE-476 5.5 - 2021-01-04
CVE-2020-35495 GNU Binutils 代码问题漏洞 CWE-476 5.5 - 2021-01-04
CVE-2020-35494 GNU Binutils 安全漏洞 CWE-908 6.1 - 2021-01-04
CVE-2020-35493 GNU Binutils 输入验证错误漏洞 CWE-20 5.5 - 2021-01-04

All 60 known CVE vulnerabilities affecting binutils with full Chinese analysis, references, and POCs where available.