← Back

CVE-2026-3442

nvd nist
Published: Mar 16, 2026Modified: Jul 13, 2026

JSON object

Loading...
7.1
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H
Exploitability: 1.8 / Impact: 5.2
Source: NVD

Description

A flaw was found in GNU Binutils. This vulnerability, a heap-based buffer overflow, specifically an out-of-bounds read, exists in the bfd linker component. An attacker could exploit this by convincing a user to process a specially crafted malicious XCOFF object file. Successful exploitation may lead to the disclosure of sensitive information or cause the application to crash, resulting in an application level denial of service.

Affected (7)

1 product
Binutils
2 products
Enterprise Linux
Openshift Container Platform
Configuration A
7 vulnerable
Vulnerable SoftwareAffected Versions
All versions
Redhat
Version 10.0
Version 6.0
Version 7.0
Version 8.0
Version 9.0
Version 4.0

References (4)

Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
Issue TrackingVendor Advisory

Timeline

No history available yet.