CVE-2025-69651 - Apache GNU Binutils Denial of Service (DoS) Vulnerability

CVE-2025-69651 - Apache GNU Binutils Denial of Service (DoS) Vulnerability

CVE ID : CVE-2025-69651 Published : March 6, 2026, 6:16 p.m. | 48 minutes ago Description : GNU Binutils thru 2.46 readelf contains a vulnerability that leads to an invalid pointer free when processing a crafted ELF binary with malformed relocation or symbol data. If dump_relocations returns early due to parsing errors, the internal all_relocations array may remain partially uninitialized. Later, process_got_section_contents() may attempt to free an invalid r_symbol pointer, triggering memory corruption checks in glibc and causing the program to terminate with SIGABRT. No evidence of further memory corruption or code execution was observed; the impact is limited to denial of service. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Published
March 6, 2026
Impact: code execution