[ubuntu/jammy-updates] binutils 2.38-4ubuntu2.10 (Accepted)

Ubuntu Archive Robot ubuntu-archive-robot at lists.canonical.com
Wed Oct 29 20:29:22 UTC 2025


binutils (2.38-4ubuntu2.10) jammy-security; urgency=medium

  * SECURITY UPDATE: Heap based buffer overflow
    - debian/patches/CVE-2025-11082.patch: avoid reads of beyond
      .eh_frame section in bfd/elf-eh-frame.c.
    - CVE-2025-11082
  * SECURITY UPDATE: Heap based buffer overflow
    - debian/patches/CVE-2025-11083.patch: fix in bfd/elfcode.h.
    - CVE-2025-11083
  * SECURITY UPDATE: Buffer overflow
    - debian/patches/CVE-2025-1147.patch: fix treating an ifunc symbol
      as a stab in binutils/nm.c, binutils/testsuite/binutils-all/nm.exp.
    - CVE-2025-1147
  * SECURITY UPDATE: Memory leak
    - debian/patches/CVE-2025-1148.patch: replace xmalloc with stat_alloc
      in ld parser in multiple files.
    - CVE-2025-1148
  * SECURITY UPDATE: Memory leak
    - debian/patches/CVE-2025-3198.patch: fix memory leak
      inbinutils/bucomm.c.
    - CVE-2025-3198
  * SECURITY UPDATE: Memory corruption
    - debian/patches/CVE-2025-5244.patch: fix segfault
      in bfd/elflink.c
    - CVE-2025-5244
  * SECURITY UPDATE: Memory corruption
    - debian/patches/CVE-2025-5245.patch: fix segfault
      in binutils/debug.c
    - CVE-2025-5245
  * SECURITY UPDATE: Heap-based buffer overflow
    - debian/patches/CVE-2025-7545.patch: check size
      of copy_section in binutils/objcopy.c
    - CVE-2025-7545
  * SECURITY UPDATE: Memory leak
    - debian/patches/CVE-2025-8225.patch: fix in binutils/dwarf.c.
    - CVE-2025-8225

Date: 2025-10-23 09:00:12.741567+00:00
Changed-By: leo.barbosa at canonical.com (Leonidas S. Barbosa)
Signed-By: Ubuntu Archive Robot <ubuntu-archive-robot at lists.canonical.com>
https://launchpad.net/ubuntu/+source/binutils/2.38-4ubuntu2.10
-------------- next part --------------
Sorry, changesfile not available.


More information about the jammy-changes mailing list