[CLSA-2026:1777949670] binutils: Fix of 8 CVEs
Type:
security
Severity:
Moderate
Release date:
2026-05-05 02:54:34 UTC
Description:
- CVE-2025-11412: fix out-of-bounds read in bfd_elf_gc_record_vtentry - CVE-2025-11413: fix out-of-bounds read in elf_link_add_object_symbols - CVE-2025-11839: fix abort in tg_tag_type with fuzzed input - CVE-2025-11840: fix SEGV from NULL howto name in coff reloc processing - CVE-2025-3198: fix memory leak in objdump display_info - CVE-2026-4647: fix out-of-bounds read in XCOFF relocation processing - CVE-2025-69645: fix abort in byte_get_little_endian from malformed DWARF - CVE-2025-69652: fix abort in readelf from malformed DWARF debug info
Updated packages:
  • binutils-2.35.2-37.el9.tuxcare.els6.i686.rpm
    sha:114db9c1401c0f958b7146aff887fe5cf8f9f55ff0f22c806dcea5b0d60440fe
  • binutils-2.35.2-37.el9.tuxcare.els6.x86_64.rpm
    sha:40555dda7e2b3b8eb151eb37bdaaf2821506b72ad7c6d63434ba9287d63004eb
  • binutils-devel-2.35.2-37.el9.tuxcare.els6.i686.rpm
    sha:b5a85ab596a0ed1d63e6b057ad5f5d1ac27b238797173883deff313ac3b182e0
  • binutils-devel-2.35.2-37.el9.tuxcare.els6.x86_64.rpm
    sha:a6e32f590f53b433301893f5f0ad12bc6b226e47d45d5f7aeda0cafcd0a2369f
  • binutils-gold-2.35.2-37.el9.tuxcare.els6.x86_64.rpm
    sha:edc409a45a91d8e42d23e6cc088f55d5f2a2f99661161a3aead1984cadb32e3a
  • cross-binutils-aarch64-2.35.2-37.el9.tuxcare.els6.x86_64.rpm
    sha:aa8f011b3c06ce69ae8b6318fe1c46d409d1d75173c7898dd73b19af6b2ee211
  • cross-binutils-ppc64le-2.35.2-37.el9.tuxcare.els6.x86_64.rpm
    sha:dae221f13b16236e585196805dff9232f276865c784b74c9f865f14057e4809b
  • cross-binutils-s390x-2.35.2-37.el9.tuxcare.els6.x86_64.rpm
    sha:f1f9b4173c7ea489be82ade5028a81f905401cd4daf8bfe7e935a21d2ddac65d
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.