CVE-2025-11083
HighAdvisory
Published 27 Sept 2025In the index since 5 Sept 2026
- Severity
- High
- worst across findings
- CVSS
- 7.8
- base score, highest
- EPSS
- 0.003
- 17th percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 399
- of 17,787 indexed, latest versions
- Container images
- 377
- deployed by those charts
- Fix available
- 4 of 4
- affected packages
Red Hat Security Advisory: gcc-toolset-13-binutils security update
Carried by container images the latest versions of 399 of 17,787 indexed charts deploy, on 377 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| binutilsdeb | 2.24-5ubuntu3.1, 2.24-5ubuntu14.2, 2.26.1-1ubuntu1~16.04.5, 2.26.1-1ubuntu1~16.04.6+35 more | 2.24-5ubuntu14.2+esm8, 2.26.1-1ubuntu1~16.04.8+esm14, 2.30-21ubuntu1~18.04.9+esm13, 2.34-6ubuntu1.11+esm2+3 more | 361 |
| binutilsrpm | 2.30-73.el8, 2.30-93.el8, 2.30-113.el8, 2.30-117.el8+5 more | 0:2.30-128.el8_10, 0:2.35.2-67.el9_7.1 | 15 |
| gcc-toolset-13-binutilsrpm | 2.40-21.el9 | 0:2.40-21.el9_7.1 | 1 |
| binutilsapk | 2.45-r0 | 2.45.1-r0 | 1 |
- OSV records
- DEBIAN-CVE-2025-11083CGA-hrr6-r28w-hw3cRHSA-2025:23336RHSA-2025:23343RHSA-2025:23382RLSA-2025:23343RLSA-2025:23382UBUNTU-CVE-2025-11083
- Also known as
- CGA-w9fm-h6gq-qh2c, RHSA-2025:23359, RHSA-2025:23400, RHSA-2026:0343, RHSA-2026:0479, RHSA-2026:0480, RHSA-2026:0481, USN-7919-1
Charts affected
399 by stars
| Chart | Latest | Affected images | Radar Score |
|---|
Container images carrying it
377 by charts deploying them
A fixed version is listed for 4 of the 4 affected packages.
| Container image | Digest | Package | Fixed in | Used by |
|---|---|---|---|---|
| ghcr.io/ | 26953ec68d5d | binutils | 2.34-6ubuntu1.11+esm2 | 1 |
| ghcr.io/ | d7c43c3135c6 | binutils | 2.34-6ubuntu1.11+esm2 | 1 |
| ghcr.io/ | 6df27f944fe8 | binutils | no fix listed | 1 |
| ghcr.io/ | 6e04659a3baa | binutils | no fix listed | 1 |
| ghcr.io/ | d19d886d5090 | binutils | no fix listed | 1 |
| ghcr.io/ | 5a6fe78d4d15 | binutils | no fix listed | 1 |
| ghcr.io/ | 9b220ea83329 | binutils | no fix listed | 1 |
| ghcr.io/ | fbba58ddb1a6 | binutils | no fix listed | 1 |
| ghcr.io/ | 7dc0ee57b628 | binutils | no fix listed | 1 |
| public.ecr.aws/ | b1493760c716 | binutils | no fix listed | 1 |
| public.ecr.aws/ | 5cd62142d6ed | binutils | no fix listed | 1 |
| public.ecr.aws/ | 046ef5c9ed50 | binutils | no fix listed | 1 |
| public.ecr.aws/ | f7567ce3419d | binutils | no fix listed | 1 |
| public.ecr.aws/ | f74851ce31f5 | binutils | no fix listed | 1 |
| quay.io/ | 70d138997acd | binutils gcc-toolset-13-binutils | 0:2.35.2-67.el9_7.1 0:2.40-21.el9_7.1 | 1 |
| quay.io/ | 9c8a510dc25e | binutils | no fix listed | 1 |
| quay.io/ | a3b9a07648b6 | binutils | 0:2.30-128.el8_10 | 1 |
| quay.io/ | 93889c3d8a34 | binutils | 2.38-4ubuntu2.10 | 1 |
| quay.io/ | 8a1361fa38c1 | binutils | 0:2.35.2-67.el9_7.1 | 1 |
| quay.io/ | b7f960bbf472 | binutils | 0:2.35.2-67.el9_7.1 | 1 |
| quay.io/ | 7a4b9fedc724 | binutils | 0:2.30-128.el8_10 | 1 |
| quay.io/ | 2169032c5840 | binutils | no fix listed | 1 |
| quay.io/ | 59fe607dfdf2 | binutils | 0:2.35.2-67.el9_7.1 | 1 |
| quay.io/ | e0d9b93dbf2b | binutils | no fix listed | 1 |
| registry.gitlab.com/ | 0e3cd8c7776d | binutils | no fix listed | 1 |
| registry.gitlab.com/ | f6385712935f | binutils | 2.34-6ubuntu1.11+esm2 | 1 |
| registry.gitlab.com/ | d76185d7270d | binutils | no fix listed | 1 |