CVE-2025-66864: Input Validation
Published Dec 29, 2025
·Updated
An issue was discovered in function dprintcompinner in file cp-demangle.c in BinUtils 2.26 allows attackers to cause a denial of service via crafted PE file.
Affected Software
2 affected components
GNU binutils
GNU binutils=2.26
Event History
Dec 29, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-66864?
CVE-2025-66864 is classified as a denial of service vulnerability.
2
How do I fix CVE-2025-66864?
To fix CVE-2025-66864, update BinUtils to the latest version where the vulnerability has been patched.
3
What software does CVE-2025-66864 affect?
CVE-2025-66864 affects the GNU BinUtils version 2.26.
4
What is the impact of exploiting CVE-2025-66864?
Exploitation of CVE-2025-66864 can lead to a denial of service condition.
5
Who is responsible for fixing CVE-2025-66864?
The maintainers of GNU BinUtils are responsible for fixing CVE-2025-66864.