Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Fri, 13 Mar 2026 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:gnu:binutils:*:*:*:*:*:*:*:* |
Tue, 10 Mar 2026 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Gnu
Gnu binutils |
|
| Vendors & Products |
Gnu
Gnu binutils |
|
| Metrics |
cvssV3_1
|
ssvc
|
Tue, 10 Mar 2026 12:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | binutils: infinite loop in readelf via crafted binary with malformed DWARF .debug_rnglists data | |
| Weaknesses | CWE-835 | |
| References |
| |
| Metrics |
threat_severity
|
cvssV3_1
|
Mon, 09 Mar 2026 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | GNU Binutils thru 2.45.1 readelf contains a denial-of-service vulnerability when processing a crafted binary with malformed DWARF .debug_rnglists data. A logic flaw in the DWARF parsing path causes readelf to repeatedly print the same warning message without making forward progress, resulting in a non-terminating output loop that requires manual interruption. No evidence of memory corruption or code execution was observed. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-03-10T13:34:40.229Z
Reserved: 2026-01-09T00:00:00.000Z
Link: CVE-2025-69648
Updated: 2026-03-10T13:34:35.618Z
Status : Analyzed
Published: 2026-03-09T15:15:52.210
Modified: 2026-03-13T16:43:41.887
Link: CVE-2025-69648
OpenCVE Enrichment
Updated: 2026-03-10T14:10:44Z