Updated binutils packages fix security vulnerabilities
Publication date: 05 Nov 2025Modification date: 05 Nov 2025
Type: security
Affected Mageia releases : 9
CVE: CVE-2025-1153 , CVE-2025-1176 , CVE-2025-1178 , CVE-2025-1181 , CVE-2025-1182
Description
GNU Binutils format.c bfd_set_format memory corruption. (CVE-2025-1153)
GNU Binutils ld elflink.c _bfd_elf_gc_mark_rsec heap-based overflow.
(CVE-2025-1176)
GNU Binutils ld libbfd.c bfd_putl64 memory corruption. (CVE-2025-1178)
GNU Binutils ld elflink.c _bfd_elf_gc_mark_rsec memory corruption.
(CVE-2025-1181)
GNU Binutils ld elflink.c bfd_elf_reloc_symbol_deleted_p memory
corruption. (CVE-2025-1182)
References
- https://bugs.mageia.org/show_bug.cgi?id=34180
- https://ubuntu.com/security/notices/USN-7423-1
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-1153
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-1176
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-1178
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-1181
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-1182
SRPMS
9/core
- binutils-2.40-11.2.mga9