[CLSA-2026:1775726631] binutils: Fix of 9 CVEs
Type:
security
Severity:
Important
Release date:
2026-04-09 09:23:55 UTC
Description:
- CVE-2023-1972: fix heap buffer overflow in _bfd_elf_slurp_version_tables - CVE-2025-11412: fix out-of-bounds read in bfd_elf_gc_record_vtentry - CVE-2025-11413: fix out-of-bounds read in elf_link_add_object_symbols - CVE-2025-11839: fix abort in tg_tag_type with fuzzed input - CVE-2025-11840: fix SEGV from NULL howto name in coff reloc processing - CVE-2025-3198: fix memory leak in objdump display_info - CVE-2025-69645: fix abort in byte_get_little_endian from malformed DWARF - CVE-2025-69652: fix abort in readelf from malformed DWARF debug info - CVE-2026-4647: fix out-of-bounds read in XCOFF relocation processing
Updated packages:
  • binutils-2.35.2-63.el9.tuxcare.els6.i686.rpm
    sha:b09ca47ea0feb5905f39cf0ab7e13d3bc09e053bb7a2f74170d3eb0f2e40033e
  • binutils-2.35.2-63.el9.tuxcare.els6.x86_64.rpm
    sha:db1d5a73d275c71c6ffecd7ed0446d7f9a027505b5a6fe6f1c11150259b5a6d4
  • binutils-devel-2.35.2-63.el9.tuxcare.els6.i686.rpm
    sha:131d429375b536fa0998fdada5bcf13e168d8a872b979aad186addb12bcb1004
  • binutils-devel-2.35.2-63.el9.tuxcare.els6.x86_64.rpm
    sha:189b82d369b7bfd92ad677dfb6b89de640a0afc61e6fd973cc1707dd0899a5d2
  • binutils-gold-2.35.2-63.el9.tuxcare.els6.x86_64.rpm
    sha:9c14e8654eb728bed1f8a97d9f94c5e92482ab466a3bb40d239aad66b6dc5a95
  • cross-binutils-aarch64-2.35.2-63.el9.tuxcare.els6.x86_64.rpm
    sha:fcf96b96328def1ec4748e21f384bbceb2ab79c36d51680f16d1bc1118cb4049
  • cross-binutils-ppc64le-2.35.2-63.el9.tuxcare.els6.x86_64.rpm
    sha:6d726f07cbcefd1e9bc72c8e8fe93aaf8e0611f7413c1c6fe6f1bb2b4692bf86
  • cross-binutils-s390x-2.35.2-63.el9.tuxcare.els6.x86_64.rpm
    sha:bd014ad6d352427dafb41fc5eb8652d99212ed499ce8f526d23dbfab9752457c
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.