Security Advisory

CVE-2019-14295

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2019-07-27 18:40:33
Last updated 2024-08-05 00:12:43
Assigner mitre
State PUBLISHED

Description

An Integer overflow in the getElfSections function in p_vmlinx.cpp in UPX 3.95 allows remote attackers to cause a denial of service (crash) via a skewed offset larger than the size of the PE section in a UPX packed executable, which triggers an allocation of excessive memory.