CVE-2026-90830

MEDIUM Status: Received

CVSS Scores

CVSS v3.x Base Score
5.3
MEDIUM
CVSS v2 Base Score
4.3
MEDIUM

Description

A security vulnerability has been detected in GNU Binutils 2.47. Impacted is the function _bfd_write_merged_section of the file bfd/merge.c of the component Section Merge. The manipulation leads to null pointer dereference. The attack needs to be performed locally. The exploit has been disclosed publicly and may be used. The project was informed of the problem early through a bug report but has not responded yet.

Published
September 14, 2026 11:18 PM
Last Modified
September 14, 2026 11:18 PM
Source
[email protected]

Weaknesses (CWE)

CWE-404 CWE-476

References

Contact Us

Get the CyboWatch SIEM platform, hosting, and 24×7 SOC analysts. Call or email us to get started.