Import Source
https://github.com/microsoft/AzureLinuxVulnerabilityData/blob/main/osv/AZL-65352.json
JSON Data
https://api.test.osv.dev/v1/vulns/AZL-65352
Upstream
Published
2025-07-13T22:15:23Z
Modified
2026-04-01T05:20:52.815440Z
Summary
CVE-2025-7545 affecting package binutils for versions less than 2.37-16
Details

A vulnerability classified as problematic was found in GNU Binutils 2.45. Affected by this vulnerability is the function copy_section of the file binutils/objcopy.c. The manipulation leads to heap-based buffer overflow. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used. The patch is named 08c3cbe5926e4d355b5cb70bbec2b1eeb40c2944. It is recommended to apply a patch to fix this issue.

References

Affected packages

Azure Linux:2 / binutils

Package

Name
binutils
Purl
pkg:rpm/azure-linux/binutils

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.37-16

Database specific

source
"https://github.com/microsoft/AzureLinuxVulnerabilityData/blob/main/osv/AZL-65352.json"