
Cloud Vulnerability DB
A community-led vulnerabilities database
CVE-2026-15003 is a heap-buffer-overflow read vulnerability (CWE-125) in the GNU Binutils linker that occurs when processing a specially crafted 32-bit XCOFF (Extended Common Object File Format) object file. Disclosed on July 27, 2026, it affects GNU Binutils packages across multiple Red Hat products, including binutils, gcc-toolset-14/15/16-binutils, mingw-binutils, gdb, and Red Hat CoreOS (RHCOS). The vulnerability carries a CVSS v3.1 base score of 5.6 (Medium) (Red Hat CVE, Github Advisory).
The root cause is an out-of-bounds read (CWE-125) in the GNU Binutils linker when it parses a maliciously crafted 32-bit XCOFF object file, leading to a heap-buffer-overflow read condition. Exploitation requires a local attacker with low privileges to supply a malicious XCOFF file and have a user (or automated build process) invoke the linker against it — user interaction is required. The upstream bug was tracked at the GNU Sourceware Bugzilla as bug #34053, and the Red Hat bug report was filed on July 7, 2026 (Red Hat Bugzilla, Github Advisory).
Successful exploitation can result in two primary consequences: information disclosure, where sensitive heap memory contents may be exposed to the attacker, and a Denial of Service (DoS) caused by the linker crashing. Because the attack vector is local and requires user interaction, the scope is limited to the affected build environment or developer workstation rather than enabling broad lateral movement. Integrity is not impacted, but the availability impact is rated High due to the linker crash (Red Hat CVE, Red Hat Bugzilla).
ld) against the malicious file — for example, by embedding it as a dependency in a build project.ld (GNU linker) process when processing XCOFF object files; core dumps generated by the linker process.SIGSEGV or SIGABRT when linking 32-bit XCOFF object files; error messages referencing heap corruption or out-of-bounds memory access..o (XCOFF object) files in build directories, particularly those not matching expected project artifacts.Red Hat has acknowledged the vulnerability and patch details are tracked in Bugzilla bug #2497805; users should monitor Red Hat Security Advisories (RHSA) for updated binutils, gcc-toolset-14/15/16-binutils, mingw-binutils, gdb, and rhcos packages and apply them as soon as they become available. As an interim workaround, avoid processing untrusted or externally sourced 32-bit XCOFF object files with the GNU Binutils linker. Restricting access to build environments and validating the provenance of all object files used in linking operations can reduce exposure (Red Hat CVE, Red Hat Bugzilla).
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."