Heap Buffer Overflow in GNU Binutils Linker Affecting 32-bit XCOFF Object Files
CVE-2026-15003
5.6MEDIUM
What is CVE-2026-15003?
A heap buffer overflow vulnerability exists in the linker of the GNU Binutils, which can be triggered when processing specially crafted 32-bit XCOFF object files. An attacker could exploit this vulnerability by providing a malicious file that leads to an out-of-bounds memory read. This exploitation can result in the disclosure of sensitive heap data, which poses serious security risks, and may also cause the linker to crash, resulting in Denial of Service.