CVE-2025-11839

A security flaw has been discovered in GNU Binutils 2.45. Impacted is the function tg_tag_type of the file prdbg.c. Performing manipulation results in unchecked return value. The attack needs to be approached locally. The exploit has been released to the public and may be exploited.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:gnu:binutils:2.45:*:*:*:*:*:*:*

History

21 Oct 2025, 18:32

Type Values Removed Values Added
References () https://sourceware.org/bugzilla/attachment.cgi?id=16344 - () https://sourceware.org/bugzilla/attachment.cgi?id=16344 - Broken Link
References () https://sourceware.org/bugzilla/show_bug.cgi?id=33448 - () https://sourceware.org/bugzilla/show_bug.cgi?id=33448 - Exploit, Issue Tracking
References () https://vuldb.com/?ctiid.328774 - () https://vuldb.com/?ctiid.328774 - Permissions Required, VDB Entry
References () https://vuldb.com/?id.328774 - () https://vuldb.com/?id.328774 - Third Party Advisory, VDB Entry
References () https://vuldb.com/?submit.661279 - () https://vuldb.com/?submit.661279 - Third Party Advisory, VDB Entry
References () https://www.gnu.org/ - () https://www.gnu.org/ - Product
CPE cpe:2.3:a:gnu:binutils:2.45:*:*:*:*:*:*:*
First Time Gnu
Gnu binutils

16 Oct 2025, 15:15

Type Values Removed Values Added
References () https://sourceware.org/bugzilla/show_bug.cgi?id=33448 - () https://sourceware.org/bugzilla/show_bug.cgi?id=33448 -

16 Oct 2025, 14:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-10-16 14:15

Updated : 2025-10-21 18:32


NVD link : CVE-2025-11839

Mitre link : CVE-2025-11839

CVE.ORG link : CVE-2025-11839


JSON object : View

Products Affected

gnu

  • binutils
CWE
CWE-252

Unchecked Return Value

CWE-253

Incorrect Check of Function Return Value