TROYANOSYVIRUS
Volver a CVEs

CVE-2026-3441

MEDIUM
6.1

Descripcion

A flaw was found in GNU Binutils. This heap-based buffer overflow vulnerability, specifically an out-of-bounds read in the bfd linker, allows an attacker to gain access to sensitive information. By convincing a user to process a specially crafted XCOFF object file, an attacker can trigger this flaw, potentially leading to information disclosure or an application level denial of service.

Detalles CVE

Puntuacion CVSS v3.16.1
SeveridadMEDIUM
Vector CVSSCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:L
Vector de ataqueLOCAL
ComplejidadLOW
Privilegios requeridosNONE
Interaccion usuarioREQUIRED
Publicado3/16/2026
Ultima modificacion3/20/2026
Fuentenvd
Avistamientos honeypot0

Productos afectados

gnu:binutilsredhat:enterprise_linuxredhat:openshift_container_platform

Debilidades (CWE)

CWE-125

Correlaciones IOC

Sin correlaciones registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.