Security Advisory

CVE-2025-11494

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2025-10-08 19:32:07
Last updated 2026-07-14 12:39:27
Assigner VulDB
CVSS score 4.8
State PUBLISHED

Description

A vulnerability was found in GNU Binutils 2.45. Impacted is the function _bfd_x86_elf_late_size_sections of the file bfd/elfxx-x86.c of the component Linker. The manipulation results in out-of-bounds read. The attack needs to be approached locally. The exploit has been made public and could be used. The patch is identified as b6ac5a8a5b82f0ae6a4642c8d7149b325f4cc60a. A patch should be applied to remediate this issue.