Heap-based Buffer Overflow in GNU Binutils
CVE-2026-3441
6.1MEDIUM
What is CVE-2026-3441?
A vulnerability exists within the GNU Binutils due to a heap-based buffer overflow, specifically an out-of-bounds read in the bfd linker. An attacker can exploit this flaw by persuading a user to process a specially crafted XCOFF object file, potentially resulting in unauthorized access to sensitive information. This may lead to significant security risks, including information leakage or application-level denial of service. It is crucial for users to update their versions to mitigate potential attacks.