Report: CVE-2026-6846 - Binutils: binutils: arbitrary code execution via malformed xcoff object file proc

Report: CVE-2026-6846 - Binutils: binutils: arbitrary code execution via malformed xcoff object file proc

CVE ID :CVE-2026-6846 Published : 22 Apr 2026, 8:37 a.m. | 28 minutes ago Description :A flaw was found in binutils. A heap-buffer-overflow vulnerability exists when processing a specially crafted XCOFF (Extended Common Object File Format) object file during linking. A local attacker could trick a user into processing this malicious file, which could lead to arbitrary code execution, allowing the attacker to run unauthorized commands, or cause a denial of service, making the system unavailable. Severity: 7.8 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Severity
HIGH
Attack Vector: local
Impact: code execution