[ubuntu/plucky-security] binutils 2.44-3ubuntu1.2 (Accepted)

John Breton john.breton at canonical.com
Mon Dec 1 13:17:53 UTC 2025


binutils (2.44-3ubuntu1.2) plucky-security; urgency=medium

  * SECURITY UPDATE: Unchecked Return Value
    - debian/patches/CVE-2025-11839.patch: Remove call to abort in the
      DGB debug format printing code, thus allowing the display of a
      fuzzed input file to complete without triggering an abort.
    - CVE-2025-11839
  * SECURITY UPDATE: Out-of-Bounds Read
    - debian/patches/CVE-2025-11840.patch: PR 33455 SEGV in vfinfo at
      ldmisc.c:527
    - CVE-2025-11840
  * SECURITY UPDATE: Memory Corruption
    - debian/patches/CVE-2025-1153.patch: PR 32603, ld -w misbehaviour
    - CVE-2025-1153

Date: 2025-11-25 18:10:12.982654+00:00
Changed-By: John Breton <john.breton at canonical.com>
https://launchpad.net/ubuntu/+source/binutils/2.44-3ubuntu1.2
-------------- next part --------------
Sorry, changesfile not available.


More information about the plucky-changes mailing list