Sploitus

CVE-2026-6846

No indexed exploits for CVE-2026-6846 yet

A flaw was found in binutils. A heap-buffer-overflow vulnerability exists when processing a specially crafted XCOFF (Extended Common Object File Format) object file during linking. A local attacker could trick a user into processing this malicious file, which could lead to arbitrary code execution, allowing the attacker to run unauthorized commands, or cause a denial of service, making the system unavailable.

Affected products
Binutils
Gnu Binutils
≤ 2.46
Redhat Hardened Images
All versions
Redhat Openshift Container Platform
= 4.0
Redhat Enterprise Linux
= 6.0, 8.0, 9.0, 10.0
CVSS 3.1
7.8 HIGH
EPSS
0.2% (7th percentile)
Weakness
CWE-122
NVD status
Modified
Published
2026-04-22

Workaround

Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base, or stability.

CVE-2026-6846 at NVD
Authoritative description, scoring and affected products

No indexed exploits for CVE-2026-6846 yet

Our index is partial: it proves presence, never absence

No exploit for CVE-2026-6846 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.