CVE-2025-66866: Input Validation
Published Dec 29, 2025
·Updated
An issue was discovered in function dabitags in file cp-demangle.c in BinUtils 2.26 allows attackers to cause a denial of service via crafted PE file.
Affected Software
2 affected components
GNU binutils
GNU binutils=2.26
Event History
Dec 29, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-66866?
CVE-2025-66866 has a moderate severity level, primarily leading to denial of service.
2
How do I fix CVE-2025-66866?
To fix CVE-2025-66866, update your GNU BinUtils to a version that addresses this vulnerability.
3
What versions of GNU BinUtils are affected by CVE-2025-66866?
CVE-2025-66866 affects BinUtils 2.26 and potentially older versions.
4
What is the impact of CVE-2025-66866?
The impact of CVE-2025-66866 is a denial of service that can disrupt system operations.
5
Where can I find more information about CVE-2025-66866?
More information about CVE-2025-66866 can be found in security advisories and vulnerability databases.