We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2025-8225

GNU Binutils DWARF Section dwarf.c process_debug_info memory leak



Description

EN DE

A vulnerability was found in GNU Binutils 2.44 and classified as problematic. This issue affects the function process_debug_info of the file binutils/dwarf.c of the component DWARF Section Handler. The manipulation leads to memory leak. Attacking locally is a requirement. The identifier of the patch is e51fdff7d2e538c0e5accdd65649ac68e6e0ddd4. It is recommended to apply a patch to fix this issue.

Eine problematische Schwachstelle wurde in GNU Binutils 2.44 gefunden. Betroffen davon ist die Funktion process_debug_info der Datei binutils/dwarf.c der Komponente DWARF Section Handler. Dank Manipulation mit unbekannten Daten kann eine memory leak-Schwachstelle ausgenutzt werden. Umgesetzt werden muss der Angriff lokal. Der Patch wird als e51fdff7d2e538c0e5accdd65649ac68e6e0ddd4 bezeichnet. Als bestmögliche Massnahme wird Patching empfohlen.

Reserved 2025-07-26 | Published 2025-07-27 | Updated 2025-07-27 | Assigner VulDB


MEDIUM: 4.8CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:P
LOW: 3.3CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L/E:P/RL:O/RC:C
LOW: 3.3CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L/E:P/RL:O/RC:C
1.7AV:L/AC:L/Au:S/C:N/I:N/A:P/E:POC/RL:OF/RC:C

Problem types

Memory Leak

Denial of Service

Product status

2.44
affected

Timeline

2025-07-26:Advisory disclosed
2025-07-26:VulDB entry created
2025-07-26:VulDB entry last update

Credits

arthurx (VulDB User) reporter

References

vuldb.com/?id.317813 (VDB-317813 | GNU Binutils DWARF Section dwarf.c process_debug_info memory leak) vdb-entry technical-description

vuldb.com/?ctiid.317813 (VDB-317813 | CTI Indicators (IOB, IOC, IOA)) signature permissions-required

vuldb.com/?submit.621883 (Submit #621883 | GNU Binutils 2.44 Memory Leak) third-party-advisory

gitlab.com/...ommit/e51fdff7d2e538c0e5accdd65649ac68e6e0ddd4 patch

www.gnu.org/ product

cve.org (CVE-2025-8225)

nvd.nist.gov (CVE-2025-8225)

Download JSON

Share this page
https://cve.threatint.eu/CVE/CVE-2025-8225

Support options

Helpdesk Chat, Email, Knowledgebase