CVE-2025-69649 is a null pointer dereference vulnerability in GNU Binutils readelf (through version 2.46) that occurs when processing a specially crafted ELF binary with malformed header fields. This flaw can lead to a segmentation fault and program termination due to an invalid section pointer during relocation processing. While it causes a denial of service, there is no evidence of memory corruption or code execution. There is currently no public exploit code available, no active exploitation has been observed, and community discussion and media coverage are minimal.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 2.46CPE matchmatch criteria | cpe:2.3:a:gnu:binutils:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.