Back

MEDIUM

elfutils: segmentation fault in elf64_xlatetom in libelf/elf32_xlatetom.c

Published Jan 29, 2019

Description

An issue was discovered in elfutils 0.175. A segmentation fault can occur in the function elf64_xlatetom in libelf/elf32_xlatetom.c, due to dwfl_segment_report_module not checking whether the dyn data read from a core file is truncated. A crafted input can cause a program crash, leading to denial-of-service, as demonstrated by eu-stack.

Affected products

Remediation

No remediation recorded yet.

Metrics

References (12)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Jan 29, 2019
Updated Aug 4, 2024
Reserved Jan 28, 2019
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity Low
Public date Oct 10, 2018