CVE-2026-90804
ADVISORY - nistSummary
A vulnerability was detected in GNU Binutils 2.47. Affected by this issue is the function _bfd_elf_write_section_eh_frame of the file bfd/elf-eh-frame.c of the component Eh Frame Section Handler. Performing a manipulation of the argument cie_length/fde_length/augmentation_data_size/write_offset results in buffer overflow. Attacking locally is a requirement. The exploit is now public and may be used. The project was informed of the problem early through a bug report but has not responded yet.
EPSS Score: 0.00197 (0.086)
Common Weakness Enumeration (CWE)
ADVISORY - nist
ADVISORY - redhat
Buffer Access with Incorrect Length Value
NIST
CVSS SCORE
0.9lowDebian
CREATED
UPDATED
ADVISORY IDCVE-2026-90804
EXPLOITABILITY SCORE
-
EXPLOITS FOUND
-
COMMON WEAKNESS ENUMERATION (CWE)-
CVSS SCORE
N/AlowUbuntu
CREATED
UPDATED
ADVISORY IDCVE-2026-90804
EXPLOITABILITY SCORE
1.3
EXPLOITS FOUND
-
COMMON WEAKNESS ENUMERATION (CWE)-
CVSS SCORE
6.1mediumRed Hat
CREATED
UPDATED
ADVISORY IDCVE-2026-90804
EXPLOITABILITY SCORE
1.3
EXPLOITS FOUND
-
COMMON WEAKNESS ENUMERATION (CWE)