Page 2 of 10 results (0.009 seconds)

CVSS: 5.5EPSS: 0%CPEs: 1EXPL: 0

Integer overflow in the dwarf_die_deliv.c in libdwarf 20160613 allows remote attackers to cause a denial of service (crash) via a crafted file. Desbordamiento de enteros en el dwarf_die_deliv.c en libdwarf 20160613 permite a atacantes remotos provocar una denegación de servicio (caída) a través de un archivo manipulado. • https://sourceforge.net/p/libdwarf/bugs/3 https://www.prevanders.net/dwarfbug.html#DW201609-002 • CWE-190: Integer Overflow or Wraparound •

CVSS: 6.5EPSS: 0%CPEs: 1EXPL: 1

The _dwarf_get_abbrev_for_code function in dwarf_util.c in libdwarf 20161001 and earlier allows remote attackers to cause a denial of service (out-of-bounds read) by calling the dwarfdump command on a crafted file. La función _dwarf_get_abbrev_for_code en dwarf_util.c en libdwarf 20161001 y versiones anteriores permite a atacantes remotos provocar una denegación de servicio (lectura fuera de límites) llamando al comando dwarfdump en un archivo manipulado. • http://www.openwall.com/lists/oss-security/2016/10/16/4 http://www.securityfocus.com/bid/93595 https://blogs.gentoo.org/ago/2016/10/04/libdwarf-heap-based-buffer-overflow-in-_dwarf_get_abbrev_for_code-dwarf_util-c https://bugzilla.redhat.com/show_bug.cgi?id=1385686 https://sourceforge.net/p/libdwarf/code/ci/268c1f18d1d28612af3b72d7c670076b1b88e51c/tree/libdwarf/dwarf_util.c?diff=0b28b923c3bd9827d1d904feed2abadde4fa5de2 • CWE-125: Out-of-bounds Read •

CVSS: 5.5EPSS: 0%CPEs: 1EXPL: 1

The _dwarf_get_abbrev_for_code function in dwarf_util.c in libdwarf 20161001 and earlier allows remote attackers to cause a denial of service (out-of-bounds read) by calling the dwarfdump command on a crafted file. La función _dwarf_get_abbrev_for_code en dwarf_util.c en libdwarf 20161001 y versiones anteriores permite a atacantes remotos provocar una denegación de servicio (lectura fuera de límites) llamando al comando dwarfdump en un archivo manipulado. • http://www.openwall.com/lists/oss-security/2016/10/16/5 http://www.securityfocus.com/bid/93592 https://blogs.gentoo.org/ago/2016/10/06/libdwarf-heap-based-buffer-overflow-in-_dwarf_get_abbrev_for_code-dwarf_util-c-2 https://bugzilla.redhat.com/show_bug.cgi?id=1385690 • CWE-125: Out-of-bounds Read •

CVSS: 5.5EPSS: 0%CPEs: 1EXPL: 1

The _dwarf_read_loc_section function in dwarf_loc.c in libdwarf 20160613 allows attackers to cause a denial of service (buffer over-read) via a crafted file. La función _dwarf_read_loc_section en dwarf_loc.c en libdwarf 20160613 permite atacantes provocar una denegación de servicio (sobre lectura de búfer) a través de un archivo manipulado. • http://www.openwall.com/lists/oss-security/2016/09/13/5 http://www.openwall.com/lists/oss-security/2016/09/15/3 http://www.securityfocus.com/bid/92971 • CWE-125: Out-of-bounds Read •

CVSS: 9.1EPSS: 0%CPEs: 1EXPL: 0

libdwarf 2016-10-21 allows context-dependent attackers to obtain sensitive information or cause a denial of service by using the "malformed dwarf file" approach, related to a "Heap Buffer Over-read" issue affecting the dwarf_util.c component, aka DW201611-006. libdwarf 2016-10-21 permite a atacantes dependientes del contexto obtener información sensible o provocar una denegación de servicio usando el enfoque "archivo pequeño mal formado", relacionado con un problema "Heap Buffer Over-read" que afecta al componente dwarf_util.c, vulnerabilidad también conocida como DW201611-006. • http://www.securityfocus.com/bid/94980 https://sourceforge.net/p/libdwarf/bugs/5 https://sourceforge.net/p/libdwarf/code/ci/5dd64de047cd5ec479fb11fe7ff2692fd819e5e5 https://www.prevanders.net/dwarfbug.html • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •