elfutils v0.189 was discovered to contain a NULL pointer dereference via the handleverdef() function at readelf.c. (CVE-2024-25260) GNU elfutils eu-readelf readelf.c printstringsection buffer overflow. (CVE-2025-1372) GNU elfutils eu-strip strip.c gelfgetsymshndx denial of service. (CVE-2025-1377)