5
CVE-2025-69644 - binutils: Binutils: Denial of Service via crafted binary with malformed DWARF debug information
An issue was discovered in Binutils before 2.46. The objdump contains a denial-of-service vulnerability when processing a crafted binary with malformed debug information. A logic flaw in the handling of DWARF location list headers can cause objdump to enter an unbounded loop and produce endless outβ¦
5.5
CVE-2025-69649 - binutils: NULL pointer dereference in readelf via crafted ELF binary
GNU Binutils thru 2.46 readelf contains a null pointer dereference vulnerability when processing a crafted ELF binary with malformed header fields. During relocation processing, an invalid or null section pointer may be passed into display_relocations(), resulting in a segmentation fault (SIGSEGV) β¦
5.5
CVE-2025-69646 - binutils: Binutils: Denial of Service via malformed DWARF debug_rnglists data
Binutils objdump contains a denial-of-service vulnerability when processing a crafted binary with malformed DWARF debug_rnglists data. A logic error in the handling of the debug_rnglists header can cause objdump to repeatedly print the same warning message and fail to terminate, resulting in an unbβ¦
5.5
CVE-2025-69645 - binutils: Binutils objdump: Denial of Service via crafted DWARF debug information
Binutils objdump contains a denial-of-service vulnerability when processing a crafted binary with malformed DWARF debug information. A logic error in the handling of DWARF compilation units can result in an invalid offset_size value being used inside byte_get_little_endian, leading to an abort (SIGβ¦
5.5
CVE-2025-69651 - binutils: Binutils: Denial of Service via crafted ELF binary processing
GNU Binutils thru 2.46 readelf contains a vulnerability that leads to an invalid pointer free when processing a crafted ELF binary with malformed relocation or symbol data. If dump_relocations returns early due to parsing errors, the internal all_relocations array may remain partially uninitializedβ¦
4.3
CVE-2026-28726 - Improper Access Control in Acronis Cyber Protect 17 Exposes Sensitive Information
Sensitive information disclosure due to improper access control. The following products are affected: Acronis Cyber Protect 17 (Linux, Windows) before build 41186.
5.5
CVE-2026-28725 - Headless Browser Configuration Leak Exposes Sensitive Information
Sensitive information disclosure due to improper configuration of a headless browser. The following products are affected: Acronis Cyber Protect 17 (Linux, Windows) before build 41186.
4.4
CVE-2025-30413 -
Credentials are not deleted from Acronis Agent after plan revocation. The following products are affected: Acronis Cyber Protect Cloud Agent (Linux, macOS, Windows) before build 40497, Acronis Cyber Protect 17 (Linux, macOS, Windows) before build 41186.
4.3
CVE-2026-28724 - Unauthorized Data Access via Insufficient Access Control in Acronis Cyber Protect 17
Unauthorized data access due to insufficient access control validation. The following products are affected: Acronis Cyber Protect 17 (Linux, Windows) before build 41186.
4.3
CVE-2026-28723 -
Unauthorized report deletion due to insufficient access control. The following products are affected: Acronis Cyber Protect 17 (Linux, Windows) before build 41186.