Description
libdw in elfutils 0.173 checks the end of the attributes list incorrectly in dwarf_getabbrev in dwarf_getabbrev.c and dwarf_hasattr in dwarf_hasattr.c, leading to a heap-based buffer over-read and an application crash.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2018-8246 | libdw in elfutils 0.173 checks the end of the attributes list incorrectly in dwarf_getabbrev in dwarf_getabbrev.c and dwarf_hasattr in dwarf_hasattr.c, leading to a heap-based buffer over-read and an application crash. |
Ubuntu USN |
USN-4012-1 | elfutils vulnerabilities |
Ubuntu USN |
USN-6322-1 | elfutils vulnerabilities |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T10:24:32.190Z
Reserved: 2018-09-03T00:00:00.000Z
Link: CVE-2018-16403
No data.
Status : Modified
Published: 2018-09-03T19:29:00.620
Modified: 2024-11-21T03:52:40.947
Link: CVE-2018-16403
OpenCVE Enrichment
No data.
EUVD
Ubuntu USN