A vulnerability was found in GNU Binutils 2.43. It has been declared as problematic. Affected by this vulnerability is the function bfd_putl64 of the file libbfd.c of the component ld. The manipulation leads to memory corruption. The attack can be launched remotely. The complexity of an attack is rather high. The exploitation appears to be difficult. The exploit has been disclosed to the public and may be used. The identifier of the patch is 75086e9de1707281172cc77f178e7949a4414ed0. It is recommended to apply a patch to fix this issue.
History

Wed, 21 May 2025 20:45:00 +0000

Type Values Removed Values Added
First Time appeared Gnu
Gnu binutils
Netapp
Netapp active Iq Unified Manager
Netapp ontap Select Deploy Administration Utility
CPEs cpe:2.3:a:gnu:binutils:2.43:*:*:*:*:*:*:*
cpe:2.3:a:netapp:active_iq_unified_manager:-:*:*:*:*:vmware_vsphere:*:*
cpe:2.3:a:netapp:ontap_select_deploy_administration_utility:-:*:*:*:*:*:*:*
Vendors & Products Gnu
Gnu binutils
Netapp
Netapp active Iq Unified Manager
Netapp ontap Select Deploy Administration Utility

Fri, 11 Apr 2025 22:45:00 +0000

Type Values Removed Values Added
References

Tue, 11 Feb 2025 16:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'poc', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 11 Feb 2025 13:45:00 +0000

Type Values Removed Values Added
References
Metrics threat_severity

None

threat_severity

Moderate


Tue, 11 Feb 2025 06:45:00 +0000

Type Values Removed Values Added
Description A vulnerability was found in GNU Binutils 2.43. It has been declared as problematic. Affected by this vulnerability is the function bfd_putl64 of the file libbfd.c of the component ld. The manipulation leads to memory corruption. The attack can be launched remotely. The complexity of an attack is rather high. The exploitation appears to be difficult. The exploit has been disclosed to the public and may be used. The identifier of the patch is 75086e9de1707281172cc77f178e7949a4414ed0. It is recommended to apply a patch to fix this issue.
Title GNU Binutils ld libbfd.c bfd_putl64 memory corruption
Weaknesses CWE-119
References
Metrics cvssV2_0

{'score': 5.1, 'vector': 'AV:N/AC:H/Au:N/C:P/I:P/A:P'}

cvssV3_0

{'score': 5.6, 'vector': 'CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L'}

cvssV3_1

{'score': 5.6, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L'}

cvssV4_0

{'score': 6.3, 'vector': 'CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published: 2025-02-11T06:31:12.580Z

Updated: 2025-04-11T22:03:22.878Z

Reserved: 2025-02-10T10:46:36.503Z

Link: CVE-2025-1178

cve-icon Vulnrichment

Updated: 2025-04-11T22:03:22.878Z

cve-icon NVD

Status : Analyzed

Published: 2025-02-11T07:15:29.997

Modified: 2025-05-21T20:35:24.220

Link: CVE-2025-1178

cve-icon Redhat

Severity : Moderate

Publid Date: 2025-02-11T06:31:12Z

Links: CVE-2025-1178 - Bugzilla