Impact
The flaw is a buffer overflow in the _bfd_elf_write_section_eh_frame function within the Eh Frame Section Handler of GNU Binutils 2.47. Manipulating the cie_length, fde_length, augmentation_data_size, or write_offset arguments can overflow an internal buffer, potentially allowing an attacker to execute arbitrary code with the privileges of the user running the binutils toolchain. This vulnerability is a classic stack-based buffer overflow (CWE‑119) and also a write‑what‑where condition (CWE‑120). Additionally, the exploit leverages negative size handling, leading to an out‑of‑bounds write (CWE‑805). The impact is limited to the host machine because the exploit requires local access and the affected code executes during the creation or modification of ELF binaries.
Affected Systems
The vulnerability affects the GNU Binutils package, specifically version 2.47, which implements the _bfd_elf_write_section_eh_frame function. No other versions or vendors are explicitly listed as affected in the CVE data.
Risk and Exploitability
The CVSS score of 2.4 indicates a low overall severity, and the EPSS score is less than 1 percent, implying a low likelihood of widespread exploitation. The vulnerability is not listed in the CISA KEV catalog. The flaw requires local execution and directly targets a build tool, so it is best mitigated by updating or patching Binutils. If the fix is not yet released, the exploit remains public and could be used by local attackers with sufficient privileges.
OpenCVE Enrichment