CVE-2025-69652 affects GNU Binutils through version 2.46, specifically its readelf utility, which can be crashed by processing a specially crafted ELF binary containing malformed DWARF debug information. This vulnerability results in a denial of service (SIGABRT) due to incomplete state cleanup leading to an unexpected zero data length during attribute parsing. There is no evidence of memory corruption or code execution, and the vulnerability is not currently being actively exploited, nor is there any known exploit code or significant community discussion.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 2.46CPE matchmatch criteria | cpe:2.3:a:gnu:binutils:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.