[El-errata] ELSA-2025-23336 Moderate: Oracle Linux 9 gcc-toolset-13-binutils security update

Errata Announcements for Oracle Linux el-errata at oss.oracle.com
Sat Dec 20 22:23:57 UTC 2025


Oracle Linux Security Advisory ELSA-2025-23336

http://linux.oracle.com/errata/ELSA-2025-23336.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
gcc-toolset-13-binutils-2.40-21.0.1.el9_7.1.x86_64.rpm
gcc-toolset-13-binutils-devel-2.40-21.0.1.el9_7.1.i686.rpm
gcc-toolset-13-binutils-devel-2.40-21.0.1.el9_7.1.x86_64.rpm
gcc-toolset-13-binutils-gold-2.40-21.0.1.el9_7.1.x86_64.rpm

aarch64:
gcc-toolset-13-binutils-2.40-21.0.1.el9_7.1.aarch64.rpm
gcc-toolset-13-binutils-devel-2.40-21.0.1.el9_7.1.aarch64.rpm
gcc-toolset-13-binutils-gold-2.40-21.0.1.el9_7.1.aarch64.rpm


SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/gcc-toolset-13-binutils-2.40-21.0.1.el9_7.1.src.rpm

Related CVEs:

CVE-2025-11083




Description of changes:

[2.40-21.0.1.1]
- Forward-port Oracle patches to 2.40-21.1.
  - CVE-2025-11083
  - Reviewed-by: David Faust <david.faust at oracle.com>
  Oracle history:
  April-02-2024 Jose E. Marchesi  <jose.marchesi at oracle.com> - 2.40-21.0.1
  - Forward-port Oracle patchs to 2.40-21.
  - Reviewed-by: Cupertino Miranda <cupertino.miranda at oracle.com>
  December-15-2023 Jose E. Marchesi  <jose.marchesi at oracle.com> - 2.40-13.0.1
  - libctf, link: fix CU-mapped links with CTF_LINK_EMPTY_CU_MAPPINGS.
    Backport of upstream commit 869a750c0ec0abcab84e38a43a1ed73321ef4371.
    [Orabug: 36113992]
  - Reviewed-by: David Faust <david.faust at oracle.com>

[2.40-21.1]
- Fix a potential illegal memory access when linking a corrupt input file.  (RHEL-130652)




More information about the El-errata mailing list