Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A heap-based buffer over-read was discovered in the function read_srclines in dwarf_getsrclines.c in libdw in elfutils 0.175. A crafted input can cause segmentation faults, leading to denial-of-service, as demonstrated by eu-nm.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
elfutils 缓冲区错误漏洞
Vulnerability Description
elfutils是一套用于读取、创建和修改ELF二进制文件的实用程序和库的集合。libdw是其中的一个ELF操作库。 elfutils 0.175版本中的libdw的dwarf_getsrclines.c文件的‘read_srclines’函数存在基于堆的缓冲区越界读取漏洞。攻击者可借助特制的输入利用该漏洞造成拒绝服务(段错误)。
CVSS Information
N/A
Vulnerability Type
N/A