Heap-based Buffer Overflow
CVE-2025-11495
Summary
A vulnerability was determined in GNU Binutils versions through 2.45. The affected element is the function "elf_x86_64_relocate_section()" of the file "elf64-x86-64.c" of the component Linker. This manipulation causes Heap-based Buffer Overflow. The attack can only be executed locally. The exploit has been publicly disclosed and may be utilized.
- LOW
- LOCAL
- NONE
- UNCHANGED
- NONE
- LOW
- NONE
- HIGH
CWE-122 - Heap-based Buffer Overflow
A heap overflow condition is a buffer overflow, where the buffer that can be overwritten is allocated in the heap portion of memory, generally meaning that the buffer was allocated using a routine such as malloc().
Advisory Timeline
- Published