Libdwarf
Libdwarf Project · 45 CVEs
Libdwarf: crashes randomly on fuzzed object
Mar 18, 2024
libdwarf: NULL pointer dereference due to corrupt line table header
Apr 15, 2023
libdwarf: carefully corrupted line table can crash calling app
Apr 15, 2023
libdwarf: double free in _dwarf_exec_frame_instr() in dwarf_frame.c
Sep 2, 2022
libdwarf: heap buffer over-read in dwarf_global_formref_b() in dwarf_form.c
Jun 22, 2022
libdwarf 0.4.0 has a heap-based buffer over-read in _dwarf_check_string_valid in dwarf_util.c.
Jun 1, 2022
libdwarf: division by zero in dwarf_elf_load_headers.c leading to DoS
Jul 24, 2019
libdwarf: use-after-free when parsing a crafted ELF file
Jan 16, 2018
libdwarf: Segmentation fault in the _dwarf_decode_s_leb128_chk function
Jun 28, 2017
libdwarf: Out-of-bounds read in dwarf_leb.c
Jun 7, 2017
libdwarf: heap-based buffer over-read in dwarf_formsdata()
May 18, 2017
libdwarf: heap-based buffer over-read in _dwarf_decode_s_leb128_chk()
May 18, 2017
libdwarf: heap-based buffer over-read in _dwarf_read_loc_expr_op()
May 18, 2017
libdwarf: heap-based buffer over-read in dwarf_formsdata()
May 18, 2017
libdwarf: Null pointer dereference in _dwarf_file_name_is_full_path()
Apr 10, 2017
libdwarf: Out-of-bounds heap read in dwarf_get_aranges_list
Mar 23, 2017
libdwarf: Out of bound heap read in _dwarf_skim_forms
Mar 23, 2017
libdwarf: Negation overflow in dwarf_leb.c
Feb 28, 2017
libdwarf: Null pointer dereference in _dwarf_decode_s_leb128
Feb 24, 2017
libdwarf: Integer overflow in dwarf_die_deliv.c
Feb 17, 2017
libdwarf: Out-of-bounds read in read_line_table_program
Feb 17, 2017
libdwarf: Heap-based buffer overflow in update_entry()
Feb 17, 2017
libdwarf: Out-of-bounds read in dwarf_dealloc()
Feb 17, 2017
libdwarf: Infinite loop in dwarf_get_arranges_list()
Feb 17, 2017
libdwarf: Null pointer dereference in read_area_length()
Feb 17, 2017
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2024-2002 | Libdwarf: crashes randomly on fuzzed object | HIGH | 1.09% | Mar 18, 2024 |
| CVE-2020-28163 | libdwarf: NULL pointer dereference due to corrupt line table header | MEDIUM | 0.79% | Apr 15, 2023 |
| CVE-2020-27545 | libdwarf: carefully corrupted line table can crash calling app | MEDIUM | 0.82% | Apr 15, 2023 |
| CVE-2022-39170 | libdwarf: double free in _dwarf_exec_frame_instr() in dwarf_frame.c | HIGH | 1.16% | Sep 2, 2022 |
| CVE-2022-34299 | libdwarf: heap buffer over-read in dwarf_global_formref_b() in dwarf_form.c | HIGH | 1.43% | Jun 22, 2022 |
| CVE-2022-32200 | libdwarf 0.4.0 has a heap-based buffer over-read in _dwarf_check_string_valid in dwarf_util.c. | HIGH | 0.97% | Jun 1, 2022 |
| CVE-2019-14249 | libdwarf: division by zero in dwarf_elf_load_headers.c leading to DoS | MEDIUM | 2.73% | Jul 24, 2019 |
| CVE-2014-9482 | libdwarf: use-after-free when parsing a crafted ELF file | MEDIUM | 2.23% | Jan 16, 2018 |
| CVE-2017-9998 | libdwarf: Segmentation fault in the _dwarf_decode_s_leb128_chk function | MEDIUM | 2.01% | Jun 28, 2017 |
| CVE-2015-8538 | libdwarf: Out-of-bounds read in dwarf_leb.c | MEDIUM | 1.22% | Jun 7, 2017 |
| CVE-2017-9055 | libdwarf: heap-based buffer over-read in dwarf_formsdata() | CRITICAL | 1.74% | May 18, 2017 |
| CVE-2017-9054 | libdwarf: heap-based buffer over-read in _dwarf_decode_s_leb128_chk() | CRITICAL | 1.74% | May 18, 2017 |
| CVE-2017-9053 | libdwarf: heap-based buffer over-read in _dwarf_read_loc_expr_op() | CRITICAL | 1.74% | May 18, 2017 |
| CVE-2017-9052 | libdwarf: heap-based buffer over-read in dwarf_formsdata() | CRITICAL | 2.58% | May 18, 2017 |
| CVE-2016-5041 | libdwarf: Null pointer dereference in _dwarf_file_name_is_full_path() | HIGH | 3.37% | Apr 10, 2017 |
| CVE-2016-9276 | libdwarf: Out-of-bounds heap read in dwarf_get_aranges_list | HIGH | 4.06% | Mar 23, 2017 |
| CVE-2016-9275 | libdwarf: Out of bound heap read in _dwarf_skim_forms | HIGH | 4.22% | Mar 23, 2017 |
| CVE-2016-9558 | libdwarf: Negation overflow in dwarf_leb.c | CRITICAL | 4.97% | Feb 28, 2017 |
| CVE-2016-5027 | libdwarf: Null pointer dereference in _dwarf_decode_s_leb128 | MEDIUM | 1.50% | Feb 24, 2017 |
| CVE-2016-7511 | libdwarf: Integer overflow in dwarf_die_deliv.c | MEDIUM | 1.55% | Feb 17, 2017 |
| CVE-2016-7510 | libdwarf: Out-of-bounds read in read_line_table_program | MEDIUM | 1.62% | Feb 17, 2017 |
| CVE-2016-5044 | libdwarf: Heap-based buffer overflow in update_entry() | HIGH | 4.38% | Feb 17, 2017 |
| CVE-2016-5043 | libdwarf: Out-of-bounds read in dwarf_dealloc() | HIGH | 4.38% | Feb 17, 2017 |
| CVE-2016-5042 | libdwarf: Infinite loop in dwarf_get_arranges_list() | HIGH | 4.13% | Feb 17, 2017 |
| CVE-2016-5040 | libdwarf: Null pointer dereference in read_area_length() | HIGH | 4.26% | Feb 17, 2017 |
Showing 1 to 25 of 45 CVEs