CVE-2025-11494
MediumAdvisory
Published 8 Oct 2025In the index since 5 Sept 2026
- Severity
- Medium
- worst across findings
- CVSS
- 5.5
- base score, highest
- EPSS
- 0.002
- 12th percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 351
- of 17,787 indexed, latest versions
- Container images
- 344
- deployed by those charts
- Fix available
- 2 of 2
- affected packages
The matching OSV records carry no description.
Carried by container images the latest versions of 351 of 17,787 indexed charts deploy, on 344 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| binutilsdeb | 2.30-21ubuntu1~18.04, 2.30-21ubuntu1~18.04.1, 2.30-21ubuntu1~18.04.2, 2.30-21ubuntu1~18.04.3+32 more | 2.30-21ubuntu1~18.04.9+esm13, 2.34-6ubuntu1.11+esm2, 2.38-4ubuntu2.12, 2.42-4ubuntu2.8+1 more | 343 |
| binutilsapk | 2.45-r0 | 2.45.1-r0 | 1 |
- OSV records
- CGA-fx9h-pvr4-6vc5DEBIAN-CVE-2025-11494UBUNTU-CVE-2025-11494
- Also known as
- CGA-gg4p-c3ww-3h64, USN-7919-1
Charts affected
351 by stars
Container images carrying it
344 by charts deploying them
A fixed version is listed for 2 of the 2 affected packages.