Security Advisory

CVE-2018-16403

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2018-09-03 19:00:00
Last updated 2024-08-05 10:24:32
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

libdw in elfutils 0.173 checks the end of the attributes list incorrectly in dwarf_getabbrev in dwarf_getabbrev.c and dwarf_hasattr in dwarf_hasattr.c, leading to a heap-based buffer over-read and an application crash.