Memory Corruption Vulnerability in GNU Binutils Readelf
CVE-2025-69651
What is CVE-2025-69651?
A vulnerability in the readelf utility of GNU Binutils allows for denial of service due to improper handling of malformed ELF binary files. When processing crafted ELF binaries with problematic relocation or symbol data, the application can encounter an invalid pointer free situation. This occurs if the dump_relocations function exits prematurely because of input parsing errors, resulting in a partially uninitialized internal array. The subsequent function, process_got_section_contents, may attempt to free an invalid pointer, which leads to memory corruption checks within glibc and causes the program to terminate unexpectedly with a SIGABRT signal. Although there's no evidence suggesting the possibility of memory corruption or code execution beyond this point, the impact primarily manifests as service disruptions.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved