ECHO-f83a-f1a3-51c1

See a problem?
Import Source
https://advisory.echohq.com/osv/ECHO-f83a-f1a3-51c1.json
JSON Data
https://api.osv.dev/v1/vulns/ECHO-f83a-f1a3-51c1
Upstream
  • CVE-2026-19582
Withdrawn
2026-08-31T14:30:19Z
Published
2026-08-22T19:17:14Z
Modified
2026-08-31T15:15:04Z
Summary
The CVE has been rejected by the assigning CNA (Red Hat, CVSS 0.0): per upstream security policy binutils treats its input as trusted, so no security boundary is crossed. No fix exists upstream or in any Debian suite.
Details
References

Affected packages

Echo / binutils

Package

Name
binutils
Purl
pkg:deb/echo/binutils

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected
Fixed
2.45.90.20260201+really2.45.50.20251201-1+e9

Database specific

source
"https://advisory.echohq.com/osv/ECHO-f83a-f1a3-51c1.json"