CNNVD-202512-4952 Information

CNNVD ID

CNNVD-202512-4952

CVE-2025-66863

  • CNNVD Published: 2025-12-29

Description (Chinese)

GNU BinUtils是美国GNU社区的一组处理二进制文件的编程工具集合。 GNU BinUtils 2.26版本存在安全漏洞,该漏洞源于cp-demangle.c文件中d_discriminator函数对特制PE文件处理不当,可能导致拒绝服务。

Description (English)

GNU BinUtils is a set of programming tools for the processing of binary files in the GNU community in the United States. There is a security loophole in version 2.26 of GNU BinUtils, which stems from the inappropriate handling of specially designed PE files in the cp-demangle.c filed discriminator function, which may lead to the denial of services.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

GNU

Published

2025-12-29

Last Modified

2026-02-24

References

https://github.com/caozhzh/CRGF-Vul/blob/main/cxxfilt/crash2.md

Patch

https://www.gnu.org/software/binutils/

Share on: