Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 15 Sep 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 15 Sep 2026 12:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
| |
| Metrics |
threat_severity
|
threat_severity
|
Mon, 14 Sep 2026 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A security flaw has been discovered in GNU Binutils 2.47. This vulnerability affects the function elf_orphan_compatible of the file ld/ldelf.c of the component ELF Orphan Section Handler. Performing a manipulation results in null pointer dereference. The attack must be initiated from a local position. The exploit has been released to the public and may be used for attacks. The project was informed of the problem early through a bug report but has not responded yet. | |
| Title | GNU Binutils ELF Orphan Section ldelf.c elf_orphan_compatible null pointer dereference | |
| First Time appeared |
Gnu
Gnu binutils |
|
| Weaknesses | CWE-404 CWE-476 |
|
| CPEs | cpe:2.3:a:gnu:binutils:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Gnu
Gnu binutils |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-09-15T13:55:03.840Z
Reserved: 2026-09-13T19:21:23.987Z
Link: CVE-2026-90828
Updated: 2026-09-15T13:42:06.454Z
Status : Awaiting Analysis
Published: 2026-09-14T22:16:58.690
Modified: 2026-09-15T14:36:46.410
Link: CVE-2026-90828
OpenCVE Enrichment
Updated: 2026-09-15T10:15:17Z