Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The _dwarf_get_abbrev_for_code function in dwarf_util.c in libdwarf 20161001 and earlier allows remote attackers to cause a denial of service (out-of-bounds read) by calling the dwarfdump command on a crafted file.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
libdwarf 安全漏洞
Vulnerability Description
libdwarf是一套用于读取和写入DWARF2调试信息的工具。 libdwarf 20161001及之前的版本中的dwarf_util.c文件的‘_dwarf_get_abbrev_for_code’函数存在安全漏洞。攻击者可利用该漏洞造成拒绝服务(越边界读取)。
CVSS Information
N/A
Vulnerability Type
N/A