CVE-2016-8681
https://notcve.org/view.php?id=CVE-2016-8681
The _dwarf_get_abbrev_for_code function in dwarf_util.c in libdwarf 20161001 and earlier allows remote attackers to cause a denial of service (out-of-bounds read) by calling the dwarfdump command on a crafted file. La función _dwarf_get_abbrev_for_code en dwarf_util.c en libdwarf 20161001 y versiones anteriores permite a atacantes remotos provocar una denegación de servicio (lectura fuera de límites) llamando al comando dwarfdump en un archivo manipulado. • http://www.openwall.com/lists/oss-security/2016/10/16/5 http://www.securityfocus.com/bid/93592 https://blogs.gentoo.org/ago/2016/10/06/libdwarf-heap-based-buffer-overflow-in-_dwarf_get_abbrev_for_code-dwarf_util-c-2 https://bugzilla.redhat.com/show_bug.cgi?id=1385690 • CWE-125: Out-of-bounds Read •