CVE-2016-5040

libdwarf before 20160923 allows remote attackers to cause a denial of service (out-of-bounds read and crash) via a large length value in a compilation unit header.
References
Link Resource
http://www.openwall.com/lists/oss-security/2016/05/24/1 Mailing List Patch Third Party Advisory
http://www.openwall.com/lists/oss-security/2016/05/25/1 Exploit Mailing List Third Party Advisory
https://www.prevanders.net/dwarfbug.html Third Party Advisory VDB Entry
Configurations

Configuration 1 (hide)

cpe:2.3:a:libdwarf_project:libdwarf:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2017-02-17 17:59

Updated : 2024-02-28 15:44


NVD link : CVE-2016-5040

Mitre link : CVE-2016-5040

CVE.ORG link : CVE-2016-5040


JSON object : View

Products Affected

libdwarf_project

  • libdwarf
CWE
CWE-125

Out-of-bounds Read