CVE-2025-3198

CVSS 2.0 Score 1.7 of 10 (low)

Details

Published Apr 4, 2025
Updated: Apr 7, 2025
CWE ID 404
CWE ID 401

Summary

CVE-2025-3198 is a newly disclosed vulnerability affecting GNU Binutils 2.43 and 2.44. The issue lies within the function "display_info" of the "objdump" component's "bucomm.c" file. This vulnerability results in a memory leak, which can be exploited locally. The exploit code has been made public, increasing the risk for potential attacks. To mitigate this vulnerability, it is highly recommended to apply the patch named "ba6ad3a18cb26b79e0e3b84c39f707535bbc344d".

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share