HomeGnuCVE-2026-3442

CVE-2026-3442

MEDIUM
6.1CVSS
Published: 2026-03-16
Updated: 2026-03-20
AI Analysis

Description

A flaw was found in GNU Binutils. This vulnerability, a heap-based buffer overflow, specifically an out-of-bounds read, exists in the bfd linker component. An attacker could exploit this by convincing a user to process a specially crafted malicious XCOFF object file. Successful exploitation may lead to the disclosure of sensitive information or cause the application to crash, resulting in an application level denial of service.

CVSS Metrics

Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:L
Attack Vector
local
Complexity
low
Privileges
none
User Action
required
Scope
unchanged
Confidentiality
high
Integrity
none
Availability
low
Weaknesses
CWE-125

Metadata

Primary Vendor
GNU
Published
3/16/2026
Last Modified
3/20/2026
Source
NIST NVD
Note: Verify all details with official vendor sources before applying patches.

Affected Products

gnu : binutilsredhat : openshift_container_platformredhat : enterprise_linuxredhat : enterprise_linuxredhat : enterprise_linuxredhat : enterprise_linuxredhat : enterprise_linux

AI-Powered Remediation

Generate remediation guidance or a C-suite brief for this vulnerability.

Executive Intelligence Brief

CVE-CVE-2026-3442 | MEDIUM Severity | CVEDatabase.com | CVEDatabase.com