UbuntuUpdates.org

Package "binutils"

Name: binutils

Description:

GNU assembler, linker and binary utilities

Latest version: 2.44-3ubuntu1.1
Release: plucky (25.04)
Level: security
Repository: main
Homepage: https://www.gnu.org/software/binutils/

Links


Download "binutils"


Other versions of "binutils" in Plucky

Repository Area Version
base main 2.44-3ubuntu1
base universe 2.44-3ubuntu1
security universe 2.44-3ubuntu1.1

Packages in group

Deleted packages are displayed in grey.


Changelog

Version: 2.44-3ubuntu1.1 2025-10-29 21:07:24 UTC

  binutils (2.44-3ubuntu1.1) plucky-security; urgency=medium

  * SECURITY UPDATE: Heap based buffer overflow
    - debian/patches/CVE-2025-11082.patch: avoid reads of beyond
      .eh_frame section in bfd/elf-eh-frame.c.
    - CVE-2025-11082
  * SECURITY UPDATE: Heap based buffer overflow
    - debian/patches/CVE-2025-11083.patch: fix in bfd/elfcode.h.
    - CVE-2025-11083
  * SECURITY UPDATE: Buffer overflow
    - debian/patches/CVE-2025-1147.patch: fix treating an ifunc symbol
      as a stab in binutils/nm.c, binutils/testsuite/binutils-all/nm.exp.
    - CVE-2025-1147
  * SECURITY UPDATE: Memory leak
    - debian/patches/CVE-2025-1148.patch: replace xmalloc with stat_alloc
      in ld parser in multiple files.
    - CVE-2025-1148
  * SECURITY UPDATE: Memory corruption
    - debian/patches/CVE-2025-1182.patch: fix illegal memory
      access in bdf/elflink.c.
    - CVE-2025-1182
  * SECURITY UPDATE: Memory leak
    - debian/patches/CVE-2025-3198.patch: fix memory leak
      inbinutils/bucomm.c.
    - CVE-2025-3198
  * SECURITY UPDATE: Memory corruption
    - debian/patches/CVE-2025-5244.patch: fix segfault
      in bfd/elflink.c
    - CVE-2025-5244
  * SECURITY UPDATE: Memory corruption
    - debian/patches/CVE-2025-5245.patch: fix segfault
      in binutils/debug.c
    - CVE-2025-5245
  * SECURITY UPDATE: Heap-based buffer overflow
    - debian/patches/CVE-2025-7545.patch: check size
      of copy_section in binutils/objcopy.c
    - CVE-2025-7545
  * SECURITY UPDATE: Out-of-bounds write
    - debian/patches/CVE-2025-7546.patch: fix in bfd/elf.c.
    - CVE-2025-7546
  * SECURITY UPDATE: Memory leak
    - debian/patches/CVE-2025-8225.patch: fix in binutils/dwarf.c.
    - CVE-2025-8225

 -- Leonidas Da Silva Barbosa <email address hidden> Tue, 21 Oct 2025 13:05:12 -0300

CVE-2025-11082 A flaw has been found in GNU Binutils 2.45. Impacted is the function _bfd_elf_parse_eh_frame of the file bfd/elf-eh-frame.c of the component Linker.
CVE-2025-11083 A vulnerability has been found in GNU Binutils 2.45. The affected element is the function elf_swap_shdr in the library bfd/elfcode.h of the component
CVE-2025-1147 A vulnerability has been found in GNU Binutils 2.43 and classified as problematic. Affected by this vulnerability is the function __sanitizer::intern
CVE-2025-1148 A vulnerability was found in GNU Binutils 2.43 and classified as problematic. Affected by this issue is the function link_order_scan of the file ld/l
CVE-2025-1182 A vulnerability, which was classified as critical, was found in GNU Binutils 2.43. Affected is the function bfd_elf_reloc_symbol_deleted_p of the fil
CVE-2025-3198 A vulnerability has been found in GNU Binutils 2.43/2.44 and classified as problematic. Affected by this vulnerability is the function display_info o
CVE-2025-5244 A vulnerability was found in GNU Binutils up to 2.44. It has been rated as critical. Affected by this issue is the function elf_gc_sweep of the file
CVE-2025-5245 A vulnerability classified as critical has been found in GNU Binutils up to 2.44. This affects the function debug_type_samep of the file /binutils/de
CVE-2025-7545 A vulnerability classified as problematic was found in GNU Binutils 2.45. Affected by this vulnerability is the function copy_section of the file bin
CVE-2025-7546 A vulnerability, which was classified as problematic, has been found in GNU Binutils 2.45. Affected by this issue is the function bfd_elf_set_group_c
CVE-2025-8225 A vulnerability was found in GNU Binutils 2.44 and classified as problematic. This issue affects the function process_debug_info of the file binutils



About   -   Send Feedback to @ubuntu_updates