GNU Binutils
cpe:2.3:a:gnu:binutils:*:*:*:*:*:*:*
- <= 2.44
A critical memory corruption vulnerability has been identified in GNU Binutils versions through 2.44. The issue arises in the ld component, specifically within the elf_gc_sweep function of the file bfd/elflink.c. This vulnerability requires local access to exploit and has been publicly disclosed, with an available proof-of-concept exploit.
Exploitation of this vulnerability leads to memory corruption.
Upgrading to GNU Binutils version 2.45 addresses this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.