<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Mon, 05 Oct 2026 20:53:19 +0000</lastBuildDate>
    <item>
      <title>ALSA-2023:2873 — Moderate: gcc-toolset-12-binutils security update</title>
      <link>https://cve.radiocsirt.org/vuln/alsa-2023:2873</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:8: gcc-toolset-12-binutils, AlmaLinux:8: gcc-toolset-12-binutils-devel, AlmaLinux:8: gcc-toolset-12-binutils-gold&lt;/p&gt;
&lt;p&gt;The binutils packages provide a collection of binary utilities for the manipulation of object code in various object file formats. It includes the ar, as, gprof, ld, nm, objcopy, objdump, ranlib, readelf, size, strings, strip, and addr2line utilities.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* binutils: NULL pointer dereference in _bfd_elf_get_symbol_version_string leads to segfault (CVE-2022-4285)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;
&lt;p&gt;Additional Changes:&lt;/p&gt;
&lt;p&gt;For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:8: gcc-toolset-12-binutils, AlmaLinux:8: gcc-toolset-12-binutils-devel, AlmaLinux:8: gcc-toolset-12-binutils-gold&lt;/p&gt;
&lt;p&gt;The binutils packages provide a collection of binary utilities for the manipulation of object code in various object file formats. It includes the ar, as, gprof, ld, nm, objcopy, objdump, ranlib, readelf, size, strings, strip, and addr2line utilities.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* binutils: NULL pointer dereference in _bfd_elf_get_symbol_version_string leads to segfault (CVE-2022-4285)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;
&lt;p&gt;Additional Changes:&lt;/p&gt;
&lt;p&gt;For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/alsa-2023:2873</guid>
    </item>
    <item>
      <title>bdu:2023-00576</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2023-00576</link>
      <description>bdu:2023-00576</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2023-00576</guid>
    </item>
    <item>
      <title>BELL-CVE-2022-4285</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2022-4285</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:23: binutils, BellSoft Hardened Containers:23: binutils&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:23: binutils, BellSoft Hardened Containers:23: binutils&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2022-4285</guid>
    </item>
    <item>
      <title>certfr-2024-avi-0619 — De multiples vulnérabilités ont été découvertes dans les produits VMware. Certaines d'entre elles permettent à un attaq…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2024-avi-0619</link>
      <description>certfr-2024-avi-0619</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2024-avi-0619</guid>
    </item>
    <item>
      <title>EUVD-2026-226014</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-226014</link>
      <description>EUVD-2026-226014</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-226014</guid>
    </item>
    <item>
      <title>fkie_cve-2022-4285</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2022-4285</link>
      <description>&lt;p&gt;An illegal memory access flaw was found in the binutils package. Parsing an ELF file containing corrupt symbol version information may result in a denial of service. This issue is the result of an incomplete fix for CVE-2020-16599.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An illegal memory access flaw was found in the binutils package. Parsing an ELF file containing corrupt symbol version information may result in a denial of service. This issue is the result of an incomplete fix for CVE-2020-16599.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2022-4285</guid>
    </item>
    <item>
      <title>GHSA-qx33-qxjc-p36p</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-qx33-qxjc-p36p</link>
      <description>&lt;p&gt;An illegal memory access flaw was found in the binutils package. Parsing an ELF file containing corrupt symbol version information may result in a denial of service. This issue is the result of an incomplete fix for CVE-2020-16599.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An illegal memory access flaw was found in the binutils package. Parsing an ELF file containing corrupt symbol version information may result in a denial of service. This issue is the result of an incomplete fix for CVE-2020-16599.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-qx33-qxjc-p36p</guid>
    </item>
    <item>
      <title>gsd-2022-4285</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2022-4285</link>
      <description>gsd-2022-4285</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2022-4285</guid>
    </item>
    <item>
      <title>msrc_CVE-2022-4285 — An illegal memory access flaw was found in the binutils package. Parsing an ELF file containing corrupt symbol version…</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2022-4285</link>
      <description>msrc_CVE-2022-4285</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2022-4285</guid>
    </item>
    <item>
      <title>OESA-2023-1592 — binutils security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2023-1592</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:22.03-LTS: binutils&lt;/p&gt;
&lt;p&gt;The GNU Binutils are a collection of binary tools. The main ones are: ld - the GNU linker. as - the GNU assembler. addr2line - Converts addresses into filenames and line numbers. ar - A utility for creating, modifying and extracting from archives. c++filt - Filter to demangle encoded C++ symbols. dlltool - Creates files for building and using DLLs. gold - A new, faster, ELF only linker, still in beta test. gprof - Displays profiling information. nlmconv - Converts object code into an NLM. nm - Lists symbols from object files. objcopy - Copies and translates object files. objdump - Displays information from object files. ranlib - Generates an index to the contents of an archive. readelf - Displays information from any ELF format object file. size - Lists the section sizes of an object or archive file. strings - Lists printable strings from files. trip - Discards symbols. windmc - A Windows compatible message compiler. windres - A compiler for Windows resource files.&#13;
&#13;
Security Fix(es):&#13;
&#13;
An illegal memory access flaw was found in the binutils package. Parsing an ELF file containing corrupt symbol version information may result in a denial of service. This issue is the result of an incomplete fix for CVE-2020-16599.(CVE-2022-4285)&#13;
&#13;
GNU Binutils before 2.40 was discovered to contain an excessive memory consumption vulnerability via the function bfd_dwarf2_find_nearest_line_with_alt at dwarf2.c. The attacker could supply a crafted ELF file and cause a DNS attack.(CVE-2022-48…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:22.03-LTS: binutils&lt;/p&gt;
&lt;p&gt;The GNU Binutils are a collection of binary tools. The main ones are: ld - the GNU linker. as - the GNU assembler. addr2line - Converts addresses into filenames and line numbers. ar - A utility for creating, modifying and extracting from archives. c++filt - Filter to demangle encoded C++ symbols. dlltool - Creates files for building and using DLLs. gold - A new, faster, ELF only linker, still in beta test. gprof - Displays profiling information. nlmconv - Converts object code into an NLM. nm - Lists symbols from object files. objcopy - Copies and translates object files. objdump - Displays information from object files. ranlib - Generates an index to the contents of an archive. readelf - Displays information from any ELF format object file. size - Lists the section sizes of an object or archive file. strings - Lists printable strings from files. trip - Discards symbols. windmc - A Windows compatible message compiler. windres - A compiler for Windows resource files.&#13;
&#13;
Security Fix(es):&#13;
&#13;
An illegal memory access flaw was found in the binutils package. Parsing an ELF file containing corrupt symbol version information may result in a denial of service. This issue is the result of an incomplete fix for CVE-2020-16599.(CVE-2022-4285)&#13;
&#13;
GNU Binutils before 2.40 was discovered to contain an excessive memory consumption vulnerability via the function bfd_dwarf2_find_nearest_line_with_alt at dwarf2.c. The attacker could supply a crafted ELF file and cause a DNS attack.(CVE-2022-48…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2023-1592</guid>
    </item>
    <item>
      <title>openSUSE-SU-2024:12717-1 — binutils-2.40-1.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2024:12717-1</link>
      <description>&lt;p&gt;binutils-2.40-1.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;binutils-2.40-1.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2024:12717-1</guid>
    </item>
    <item>
      <title>RHSA-2023:3269 — Red Hat Security Advisory: devtoolset-12-binutils security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2023:3269</link>
      <description>&lt;p&gt;libiberty: Heap/stack buffer overflow in the dlang_lname function in d-demangle.c binutils: NULL pointer dereference in _bfd_elf_get_symbol_version_string leads to segfault&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;libiberty: Heap/stack buffer overflow in the dlang_lname function in d-demangle.c binutils: NULL pointer dereference in _bfd_elf_get_symbol_version_string leads to segfault&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2023:3269</guid>
    </item>
    <item>
      <title>RLSA-2023:2873 — Moderate: gcc-toolset-12-binutils security update</title>
      <link>https://cve.radiocsirt.org/vuln/rlsa-2023:2873</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Rocky Linux:8: gcc-toolset-12-binutils&lt;/p&gt;
&lt;p&gt;The binutils packages provide a collection of binary utilities for the manipulation of object code in various object file formats. It includes the ar, as, gprof, ld, nm, objcopy, objdump, ranlib, readelf, size, strings, strip, and addr2line utilities.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* binutils: NULL pointer dereference in _bfd_elf_get_symbol_version_string leads to segfault (CVE-2022-4285)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;
&lt;p&gt;Additional Changes:&lt;/p&gt;
&lt;p&gt;For detailed information on changes in this release, see the Rocky Linux 8.8 Release Notes linked from the References section.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Rocky Linux:8: gcc-toolset-12-binutils&lt;/p&gt;
&lt;p&gt;The binutils packages provide a collection of binary utilities for the manipulation of object code in various object file formats. It includes the ar, as, gprof, ld, nm, objcopy, objdump, ranlib, readelf, size, strings, strip, and addr2line utilities.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* binutils: NULL pointer dereference in _bfd_elf_get_symbol_version_string leads to segfault (CVE-2022-4285)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;
&lt;p&gt;Additional Changes:&lt;/p&gt;
&lt;p&gt;For detailed information on changes in this release, see the Rocky Linux 8.8 Release Notes linked from the References section.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rlsa-2023:2873</guid>
    </item>
    <item>
      <title>SUSE-SU-2023:3695-1 — Security update for binutils</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2023:3695-1</link>
      <description>&lt;p&gt;Security update for binutils&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for binutils&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2023:3695-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2022-4285</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2022-4285</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:16.04:LTS: gdb, Ubuntu:16.04:LTS: binutils-avr, Ubuntu:Pro:18.04:LTS: gdb, Ubuntu:18.04:LTS: binutils-avr, Ubuntu:20.04:LTS: gdb, Ubuntu:20.04:LTS: binutils-avr, Ubuntu:22.04:LTS: binutils, Ubuntu:22.04:LTS: binutils-avr, Ubuntu:22.04:LTS: gdb, Ubuntu:24.04:LTS: binutils-avr and 2 more&lt;/p&gt;
&lt;p&gt;An illegal memory access flaw was found in the binutils package. Parsing an ELF file containing corrupt symbol version information may result in a denial of service. This issue is the result of an incomplete fix for CVE-2020-16599.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:16.04:LTS: gdb, Ubuntu:16.04:LTS: binutils-avr, Ubuntu:Pro:18.04:LTS: gdb, Ubuntu:18.04:LTS: binutils-avr, Ubuntu:20.04:LTS: gdb, Ubuntu:20.04:LTS: binutils-avr, Ubuntu:22.04:LTS: binutils, Ubuntu:22.04:LTS: binutils-avr, Ubuntu:22.04:LTS: gdb, Ubuntu:24.04:LTS: binutils-avr and 2 more&lt;/p&gt;
&lt;p&gt;An illegal memory access flaw was found in the binutils package. Parsing an ELF file containing corrupt symbol version information may result in a denial of service. This issue is the result of an incomplete fix for CVE-2020-16599.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2022-4285</guid>
    </item>
    <item>
      <title>WID-SEC-W-2022-2228 — binutils: Schwachstelle ermöglicht Denial of Service</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2022-2228</link>
      <description>&lt;p&gt;Ein lokaler Angreifer kann eine Schwachstelle in binutils ausnutzen, um einen Denial of Service Angriff durchzuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein lokaler Angreifer kann eine Schwachstelle in binutils ausnutzen, um einen Denial of Service Angriff durchzuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2022-2228</guid>
    </item>
  </channel>
</rss>
