<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T14:54:37.812542+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2025-03384</id>
    <title>bdu:2025-03384</title>
    <updated>2026-10-02T14:54:37.831834+00:00</updated>
    <content>bdu:2025-03384</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2025-03384"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bell-cve-2025-0840</id>
    <title>BELL-CVE-2025-0840</title>
    <updated>2026-10-02T14:54:37.831874+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p><strong>Affected:</strong> Alpaquita:23: binutils, Alpaquita:stream: binutils, BellSoft Hardened Containers:23: binutils, BellSoft Hardened Containers:stream: binutils</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bell-cve-2025-0840"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2026-avi-0218</id>
    <title>certfr-2026-avi-0218 — De multiples vulnérabilités ont été découvertes dans les produits VMware. Certaines d'entre elles permettent à un attaq…</title>
    <updated>2026-10-02T14:54:37.831908+00:00</updated>
    <content>certfr-2026-avi-0218</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2026-avi-0218"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2025-03953</id>
    <title>cnvd-2025-03953</title>
    <updated>2026-10-02T14:54:37.831926+00:00</updated>
    <content>cnvd-2025-03953</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2025-03953"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-215148</id>
    <title>EUVD-2026-215148</title>
    <updated>2026-10-02T14:54:37.831938+00:00</updated>
    <content>EUVD-2026-215148</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-215148"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2025-0840</id>
    <title>fkie_cve-2025-0840</title>
    <updated>2026-10-02T14:54:37.831949+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A vulnerability, which was classified as problematic, was found in GNU Binutils up to 2.43. This affects the function disassemble_bytes of the file binutils/objdump.c. The manipulation of the argument buf leads to stack-based buffer overflow. It is possible to initiate the attack remotely. The complexity of an attack is rather high. The exploitability is told to be difficult. The exploit has been disclosed to the public and may be used. Upgrading to version 2.44 is able to address this issue. The identifier of the patch is baac6c221e9d69335bf41366a1c7d87d8ab2f893. It is recommended to upgrade the affected component.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2025-0840"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-c5qp-mx9f-m5c7</id>
    <title>GHSA-c5qp-mx9f-m5c7</title>
    <updated>2026-10-02T14:54:37.831974+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A vulnerability, which was classified as problematic, was found in GNU Binutils up to 2.43. This affects the function disassemble_bytes of the file binutils/objdump.c. The manipulation of the argument buf leads to stack-based buffer overflow. It is possible to initiate the attack remotely. The complexity of an attack is rather high. The exploitability is told to be difficult. The exploit has been disclosed to the public and may be used. Upgrading to version 2.44 is able to address this issue. The identifier of the patch is baac6c221e9d69335bf41366a1c7d87d8ab2f893. It is recommended to upgrade the affected component.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-c5qp-mx9f-m5c7"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/msrc_cve-2025-0840</id>
    <title>msrc_CVE-2025-0840 — GNU Binutils objdump.c disassemble_bytes stack-based overflow</title>
    <updated>2026-10-02T14:54:37.831990+00:00</updated>
    <content>msrc_CVE-2025-0840</content>
    <link href="https://cve.radiocsirt.org/vuln/msrc_cve-2025-0840"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/oesa-2025-1098</id>
    <title>OESA-2025-1098 — binutils security update</title>
    <updated>2026-10-02T14:54:37.832004+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> openEuler:22.03-LTS-SP3: binutils</p>
<p>Binutils is a collection of binary utilities, including ar (for creating, modifying and extracting from archives), as (a family of GNU assemblers), gprof (for displaying call graph profile data), ld (the GNU linker), nm (for listing symbols from object files), objcopy (for copying and translating object files), objdump (for displaying information from object files), ranlib (for generating an index for the contents of an archive), readelf (for displaying detailed information about binary files), size (for listing the section sizes of an object or archive file), strings (for listing printable strings from files), strip (for discarding symbols), and addr2line (for converting addresses to file and line).

Security Fix(es):</p>
<p>https://www.gnu.org/software/binutils/ nm &amp;gt;=2.43 is affected by: Incorrect Access Control. The type of exploitation is: local. The component is: `nm --without-symbol-version` function.(CVE-2024-57360)</p>
<p>A vulnerability, which was classified as problematic, was found in GNU Binutils up to 2.43. This affects the function disassemble_bytes of the file binutils/objdump.c. The manipulation of the argument buf leads to stack-based buffer overflow. It is possible to initiate the attack remotely. The complexity of an attack is rather high. The exploitability is told to be difficult. The exploit has been disclosed to the public and may be used. Upgrading to version 2.44 is able to address this issue. The identifier of the patch is baac6c221e9d69335bf41366a1c7d87d8…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/oesa-2025-1098"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2025:15725-1</id>
    <title>openSUSE-SU-2025:15725-1 — binutils-2.45-2.1 on GA media</title>
    <updated>2026-10-02T14:54:37.832038+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>binutils-2.45-2.1 on GA media</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2025:15725-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2025:21195-1</id>
    <title>SUSE-SU-2025:21195-1 — Security update for binutils</title>
    <updated>2026-10-02T14:54:37.832054+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for binutils</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2025:21195-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-0840</id>
    <title>UBUNTU-CVE-2025-0840</title>
    <updated>2026-10-02T14:54:37.832075+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:14.04:LTS: binutils, Ubuntu:Pro:16.04:LTS: binutils, Ubuntu:Pro:18.04:LTS: binutils, Ubuntu:20.04:LTS: binutils, Ubuntu:22.04:LTS: binutils, Ubuntu:24.04:LTS: binutils</p>
<p>A vulnerability, which was classified as problematic, was found in GNU Binutils up to 2.43. This affects the function disassemble_bytes of the file binutils/objdump.c. The manipulation of the argument buf leads to stack-based buffer overflow. It is possible to initiate the attack remotely. The complexity of an attack is rather high. The exploitability is told to be difficult. The exploit has been disclosed to the public and may be used. Upgrading to version 2.44 is able to address this issue. The identifier of the patch is baac6c221e9d69335bf41366a1c7d87d8ab2f893. It is recommended to upgrade the affected component.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-0840"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-0223</id>
    <title>WID-SEC-W-2025-0223 — binutils: Schwachstelle ermöglicht nicht spezifizierten Angriff</title>
    <updated>2026-10-02T14:54:37.832101+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, anonymer Angreifer kann eine Schwachstelle in binutils ausnutzen, um einen nicht näher spezifizierten Angriff durchzuführen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2025-0223"/>
  </entry>
</feed>
