Security Advisory

CVE-2026-90828

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-09-14 22:00:20
Last updated 2026-09-15 13:55:03
Assigner VulDB
CVSS score 5.3
State PUBLISHED

Description

A security flaw has been discovered in GNU Binutils 2.47. This vulnerability affects the function elf_orphan_compatible of the file ld/ldelf.c of the component ELF Orphan Section Handler. Performing a manipulation results in null pointer dereference. The attack must be initiated from a local position. The exploit has been released to the public and may be used for attacks. The project was informed of the problem early through a bug report but has not responded yet.