Known vulnerabilities in binutils (Red Hat package)

Software CPE: cpe:2.3:o:red_hat:binutils_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Total vulnerabilities: 15
Public exploits: 1
Known exploited (KEV): 0
Highest CVSSv4 Score: 8.7

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting binutils (Red Hat package) binutils (Red Hat package) is affected by 15 known vulnerabilities: 2 high, 4 medium, 9 low Critical High Medium Low

Vulnerabilities (15)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU116973 - Heap-based Buffer Overflow
CVE-2025-11083
CWE-122 Low
No
No
2.30-73.el8_2.2, 2.30-93.el8_4.3, 2.30-113.el8_6.4, 2.30-119.el8_8.3, 2.35.2-43.el9_4.2, 2.35.2-63.el9_6.1, 2.41-53.el10_0.2, 2.41-58.el10_1.2 14.10.2025 SB2025082140
SB2025101420
SB2025101421
and 41 more
#VU116972 - Heap-based Buffer Overflow
CVE-2025-11082
CWE-122 Low
No
No
2.41-53.el10_0.2, 2.41-58.el10_1.2 14.10.2025 SB2025082140
SB2025101420
SB2025101421
and 16 more
#VU76453 - NULL Pointer Dereference
CVE-2022-4285
CWE-476 Low
No
No
2.30-119.el8_8.2, 2.35.2-42.el9 23.05.2023 SB2023052341
SB2023052342
SB2023052436
and 38 more
#VU66493 - Heap-based Buffer Overflow
CVE-2021-20284
CWE-122 High
No
No
2.30-108.el8 15.08.2022 SB2021042942
SB2022081546
SB2021111042
and 4 more
#VU66492 - UNIX Symbolic Link (Symlink) Following
CVE-2021-20197
CWE-61 Low
No
No
2.30-108.el8 15.08.2022 SB2021042942
SB2022081546
SB2021111042
and 7 more
#VU61550 - Improper input validation
CVE-2021-3487
CWE-20 Medium
No
No
2.30-108.el8 23.03.2022 SB2021041527
SB2022032315
SB2022081546
and 11 more
#VU57848 - Improper input validation
CVE-2021-42574
CWE-20 Low
Available
No
2.23.52.0.1-55.el7_2.4, 2.25.1-22.base.el7_3.3, 2.25.1-32.base.el7_4.5, 2.27-34.base.el7_6.4, 2.27-41.base.el7_7.4, 2.27-44.base.el7_9.1, 2.30-58.el8_1.3, 2.30-73.el8_2.1, 2.30-93.el8_4.2, 2.30-108.el8_5.1 02.11.2021 SB2021110201
SB2021110205
SB2021110206
and 64 more
#VU50123 - Out-of-bounds write
CVE-2020-35448
CWE-787 High
No
No
2.30-108.el8 27.12.2020 SB2021012823
SB2021111042
SB2023081017
and 4 more
#VU24445 - Integer overflow
CVE-2019-17451
CWE-190 Medium
No
No
2.30-73.el8 21.01.2020 SB2019022402
SB2020042840
SB2020072721
and 3 more
#VU24444 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2019-17450
CWE-835 Medium
No
No
2.30-79.el8 21.01.2020 SB2019022402
SB2020072721
SB2020103105
and 3 more
#VU19572 - Improper input validation
CVE-2019-1010204
CWE-20 Low
No
No
2.30-73.el8 31.07.2019 SB2019022402
SB2020042840
SB2022032836
and 7 more
#VU16695 - Integer overflow
CVE-2018-1000876
CWE-190 Low
No
No
2.27-41.base.el7 25.12.2018 SB2018121020
SB2022111901
SB2019080660
and 1 more
#VU13473 - NULL Pointer Dereference
CVE-2018-12697
CWE-476 Low
No
No
2.27-41.base.el7 26.06.2018 SB2018041305
SB2022111901
SB2019080660
#VU13471 - Heap-based Buffer Overflow
CVE-2018-12699
CWE-122 Low
No
No
2.30-125.el8_10 25.06.2018 SB2018041305
SB2021123106
SB2024111503
and 8 more
#VU37018 - Resource exhaustion
CVE-2018-12641
CWE-400 Medium
No
No
2.27-41.base.el7 22.06.2018 SB2018033017
SB2022111901
SB2019080660