A vulnerability has been found in GNU Binutils 2.45. The affected element is the function elf_swap_shdr in the library bfd/elfcode.h of the component Linker. The manipulation leads to heap-based buffer overflow. The attack must be carried out locally. The exploit has been disclosed to the public and may be used. The identifier of the patch is 9ca499644a21ceb3f946d1c179c38a83be084490. To fix this issue, it is recommended to deploy a patch. The code maintainer replied with "[f]ixed for 2.46".
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions Via RHSA-2025:23233 https://access.redhat.com/errata/RHSA-2025:23233
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions Via RHSA-2025:23232 https://access.redhat.com/errata/RHSA-2025:23232
This issue has been addressed in the following products: Red Hat Enterprise Linux 10.0 Extended Update Support Via RHSA-2025:23405 https://access.redhat.com/errata/RHSA-2025:23405
This issue has been addressed in the following products: Red Hat Enterprise Linux 10 Via RHSA-2025:23306 https://access.redhat.com/errata/RHSA-2025:23306
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.4 Extended Update Support Via RHSA-2025:23359 https://access.redhat.com/errata/RHSA-2025:23359
This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2025:23382 https://access.redhat.com/errata/RHSA-2025:23382
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.6 Extended Update Support Via RHSA-2025:23400 https://access.redhat.com/errata/RHSA-2025:23400
This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2025:23336 https://access.redhat.com/errata/RHSA-2025:23336
This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2025:23343 https://access.redhat.com/errata/RHSA-2025:23343