VYPR

objdump

by GNU

CVEs (8)

  • CVE-2024-53589HigDec 5, 2024
    risk 0.55cvss 8.4epss 0.00

    GNU objdump 2.43 is vulnerable to Buffer Overflow in the BFD (Binary File Descriptor) library's handling of tekhex format files.

  • CVE-2022-47696HigAug 22, 2023
    risk 0.51cvss 7.8epss 0.00

    An issue was discovered Binutils objdump before 2.39.3 allows attackers to cause a denial of service or other unspecified impacts via function compare_symbols.

  • CVE-2022-47695HigAug 22, 2023
    risk 0.51cvss 7.8epss 0.00

    An issue was discovered Binutils objdump before 2.39.3 allows attackers to cause a denial of service or other unspecified impacts via function bfd_mach_o_get_synthetic_symtab in match-o.c.

  • CVE-2021-46174HigAug 22, 2023
    risk 0.49cvss 7.5epss 0.01

    Heap-based Buffer Overflow in function bfd_getl32 in Binutils objdump 3.37.

  • CVE-2021-3549HigMay 26, 2021
    risk 0.46cvss 7.1epss 0.01

    An out of bounds flaw was found in GNU binutils objdump utility version 2.36. An attacker could use this flaw and pass a large section to avr_elf32_load_records_from_section() probably resulting in a crash or in some cases memory corruption. The highest threat from this…

  • CVE-2025-69646MedMar 6, 2026
    risk 0.36cvss 5.5epss 0.00

    Binutils objdump contains a denial-of-service vulnerability when processing a crafted binary with malformed DWARF debug_rnglists data. A logic error in the handling of the debug_rnglists header can cause objdump to repeatedly print the same warning message and fail to terminate,…

  • CVE-2025-69645MedMar 6, 2026
    risk 0.36cvss 5.5epss 0.00

    Binutils objdump contains a denial-of-service vulnerability when processing a crafted binary with malformed DWARF debug information. A logic error in the handling of DWARF compilation units can result in an invalid offset_size value being used inside byte_get_little_endian,…

  • CVE-2025-69644MedMar 6, 2026
    risk 0.33cvss 5.0epss 0.00

    An issue was discovered in Binutils before 2.46. The objdump contains a denial-of-service vulnerability when processing a crafted binary with malformed debug information. A logic flaw in the handling of DWARF location list headers can cause objdump to enter an unbounded loop and…