An issue was discovered in Binutils before 2.46. The objdump contains a denial-of-service vulnerability when processing a crafted binary with malformed debug information. A logic flaw in the handling of DWARF location list headers can cause objdump to enter an unbounded loop and produce endless output until manually interrupted. This issue affects versions prior to the upstream fix and allows a local attacker to cause excessive resource consumption by supplying a malicious input file.
Metrics
Affected Vendors & Products
References
History
Fri, 06 Mar 2026 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An issue was discovered in Binutils before 2.46. The objdump contains a denial-of-service vulnerability when processing a crafted binary with malformed debug information. A logic flaw in the handling of DWARF location list headers can cause objdump to enter an unbounded loop and produce endless output until manually interrupted. This issue affects versions prior to the upstream fix and allows a local attacker to cause excessive resource consumption by supplying a malicious input file. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published: 2026-03-06T00:00:00.000Z
Updated: 2026-03-06T17:12:01.087Z
Reserved: 2026-01-09T00:00:00.000Z
Link: CVE-2025-69644
No data.
Status : Received
Published: 2026-03-06T18:16:16.223
Modified: 2026-03-06T18:16:16.223
Link: CVE-2025-69644
No data.