CVE-2025-8225: GNU Binutils DWARF Section dwarf.c process_debug_info memory leak
A vulnerability was found in GNU Binutils 2.44 and classified as problematic. This issue affects the function processdebuginfo of the file binutils/dwarf.c of the component DWARF Section Handler. The manipulation leads to memory leak. Attacking locally is a requirement. The identifier of the patch is e51fdff7d2e538c0e5accdd65649ac68e6e0ddd4. It is recommended to apply a patch to fix this issue.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
GNU Binutilsto a version that resolves this vulnerability.Patch e51fdff7d2e538c0e5accdd65649ac68e6e0ddd4
Event History
Frequently Asked Questions
What is the severity of CVE-2025-8225?
CVE-2025-8225 is classified as a problematic vulnerability.
How do I fix CVE-2025-8225?
To address CVE-2025-8225, upgrade to a patched version of GNU Binutils if available.
What components of GNU Binutils are affected by CVE-2025-8225?
CVE-2025-8225 affects the process_debug_info function in the DWARF Section Handler.
Is CVE-2025-8225 a remote vulnerability?
No, CVE-2025-8225 requires local exploitation.
What kind of impact does CVE-2025-8225 have?
CVE-2025-8225 can lead to a memory leak in the affected application.