Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
light_mode
dark_mode
ECHO-f83a-f1a3-51c1
See a problem?
Import Source
https://advisory.echohq.com/osv/ECHO-f83a-f1a3-51c1.json
JSON Data
https://api.osv.dev/v1/vulns/ECHO-f83a-f1a3-51c1
Upstream
CVE-2026-19582
Withdrawn
2026-08-31T14:30:19Z
Published
2026-08-22T19:17:14Z
Modified
2026-08-31T15:15:04Z
Summary
The CVE has been rejected by the assigning CNA (Red Hat, CVSS 0.0): per upstream security policy binutils treats its input as trusted, so no security boundary is crossed. No fix exists upstream or in any Debian suite.
Details
References
https://advisory.echohq.com/cve/CVE-2026-19582
Affected packages
Echo
/
binutils
Package
Name
binutils
Purl
pkg:deb/echo/binutils
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
2.45.90.20260201+really2.45.50.20251201-1+e9
Database specific
source
"https://advisory.echohq.com/osv/ECHO-f83a-f1a3-51c1.json"
ECHO-f83a-f1a3-51c1 - OSV