CVE 4.8 MEDIUM

GNU Binutils BFD Library elf.c bfd_elf_get_str_section null pointer dereference_CVE-2025-8224

4.8 / 10
MEDIUM
CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:P

Description

A vulnerability has been found in GNU Binutils 2.44 and classified as problematic. This vulnerability affects the function bfd_elf_get_str_section of the file bfd/elf.c of the component BFD Library. The manipulation leads to null pointer dereference. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used. The name of the patch is db856d41004301b3a56438efd957ef5cabb91530. It is recommended to apply a patch to fix this issue.

Basic Information

ID CVE-2025-8224
Source VulDB
Published Jul 27, 2025 at 05:32
Modified Jul 28, 2025 at 16:59

Affected Product

Vendor GNU
Product Binutils
Version 2.44
Affected Versions GNU Binutils 2.44

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.