CVE-2019-12972Medium· 5.5▾ SunlitAn issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.32. There is a heap-based buffer over-read in _bfd_doprnt in bfd.c because elf_object_p in elfcode.h mishandles an e_shstr…
▾ Sunlit zone — Low / medium · no exploitation signal
impact 30.3 · likelihood 0.4 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
1.8%
An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.32. There is a heap-based buffer over-read in _bfd_doprnt in bfd.c because elf_object_p in elfcode.h mishandles an e_shstrndx section of type SHT_GROUP by omitting a trailing '\0' character.
binutils = 2.32leap = 15.1leap = 15.2ubuntu_linux = 18.04Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
Connected by shared product, vendor, weakness, or advisory.
CVE-2019-14250Medium· 5.5An issue was discovered in GNU libiberty, as distributed in GNU Binutils 2.32
CVE-2025-11413Low· 3.3A vulnerability was found in GNU Binutils 2.45
CVE-2025-11414Low· 3.3A vulnerability was determined in GNU Binutils 2.45
CVE-2025-11412Low· 3.3A vulnerability has been found in GNU Binutils 2.45
CVE-2025-11494Low· 3.3A vulnerability was found in GNU Binutils 2.45
CVE-2025-11081Low· 3.3A vulnerability was detected in GNU Binutils 2.45