Several security issues were fixed in GNU binutils.
Software Description:
- binutils: GNU assembler, linker and binary utilities
Details:
It was discovered that GNU binutils incorrectly handled certain files.
An attacker could possibly use this issue to cause a crash or execute
arbitrary code. The attack is restricted to local execution.
(CVE-2025-11082)
It was discovered that GNU binutils incorrectly handled certain inputs.
An attacker could possibly use this issue to cause a crash or
execute arbitrary code. (CVE-2025-11083, CVE-2025-5244, CVE-2025-5245,
CVE-2025-7554)
It was discovered that GNU binutils incorrectly handled certain files.
An attacker could possibly use this issue to cause crash, execute
arbitrary code or expose sensitive information. (CVE-2025-1147)
It was discovered that GNU binutils incorrectly handled certain inputs.
An attacker could possibly use this issue to cause a denial of service.
(CVE-2025-1148, CVE-2025-3198, CVE-2025-8225
...
The problem can be corrected by updating your system to the following package versions: Ubuntu 25.04 binutils 2.44-3ubuntu1.1 binutils-multiarch 2.44-3ubuntu1.1 Ubuntu 24.04 LTS binutils 2.42-4ubuntu2.6 binutils-multiarch 2.42-4ubuntu2.6 Ubuntu 22.04 LTS binutils 2.38-4ubuntu2.10 binutils-multiarch 2.38-4ubuntu2.10 In general, a standard system update will make all the necessary changes.
https://ubuntu.com/security/notices/USN-7847-1
CVE-2025-11082, CVE-2025-11083, CVE-2025-1147, CVE-2025-1148,
CVE-2025-1182, CVE-2025-3198, CVE-2025-5244, CVE-2025-5245,
CVE-2025-7545, CVE-2025-7546, CVE-2025-8225
Get the latest Linux and open source security news straight to your inbox.