Записи elfutils project
33 опубликованных записей вендора elfutils project.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 1
- С записью об исправлении
- 90,9 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-125 Out-of-bounds Read12
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer7
- CWE-404 Improper Resource Shutdown or Release3
- CWE-787 Out-of-bounds Write2
- CWE-20 Improper Input Validation2
- CWE-369 Divide By Zero1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
33 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
40В плане | CVE-2018-16402Эксплойта нет | libelf/elf_end.c in elfutils 0.173 allows remote attackers to cause a denial of service (double free and application crash) or possibly haveelfutils project · elfutils · CWE-415 | Критическая9,8 | — | 3,7 % | 3 сент. 2018 г. |
31Наблюдать | CVE-2018-8769Эксплойта нет | elfutils 0.170 has a buffer over-read in the ebl_dynamic_tag_name function of libebl/ebldynamictagname.c because SYMTAB_SHNDX is unsupportedelfutils project · elfutils · CWE-125 | Высокая7,8 | — | 0,8 % | 18 мар. 2018 г. |
28Наблюдать | CVE-2014-0172Эксплойта нет | Integer overflow in the check_section function in dwarf_begin_elf.c in the libdw library, as used in elfutils 0.153 and possibly through 0.1elfutils project · elfutils · CWE-189 | Средняя6,8 | — | 4,0 % | 11 апр. 2014 г. |
27Наблюдать | CVE-2014-9447Эксплойта нет | Directory traversal vulnerability in the read_long_names function in libelf/elf_begin.c in elfutils 0.152 and 0.161 allows remote attackers elfutils project · elfutils · CWE-22 | Средняя6,4 | — | 5,0 % | 2 янв. 2015 г. |
27Наблюдать | CVE-2018-18520Эксплойта нет | An Invalid Memory Address Dereference exists in the function elf_end in libelf in elfutils through v0.174.elfutils project · elfutils · CWE-119 | Средняя6,5 | — | 2,8 % | 19 окт. 2018 г. |
27Наблюдать | CVE-2019-7149Эксплойта нет | A heap-based buffer over-read was discovered in the function read_srclines in dwarf_getsrclines.c in libdw in elfutils 0.175.elfutils project · elfutils · CWE-125 | Средняя6,5 | — | 2,1 % | 28 янв. 2019 г. |
26Наблюдать | CVE-2019-7148Эксплойта нет | An attempted excessive memory allocation was discovered in the function read_long_names in elf_begin.c in libelf in elfutils 0.174.elfutils project · elfutils · CWE-770 | Средняя6,5 | — | 1,6 % | 28 янв. 2019 г. |
23Наблюдать | CVE-2017-7608Эксплойта нет | The ebl_object_note_type_name function in eblobjnotetypename.c in elfutils 0.168 allows remote attackers to cause a denial of service (heap-elfutils project · elfutils · CWE-125 | Средняя5,5 | — | 2,1 % | 9 апр. 2017 г. |
23Наблюдать | CVE-2017-7611Эксплойта нет | The check_symtab_shndx function in elflint.c in elfutils 0.168 allows remote attackers to cause a denial of service (heap-based buffer over-elfutils project · elfutils · CWE-125 | Средняя5,5 | — | 1,8 % | 9 апр. 2017 г. |
23Наблюдать | CVE-2018-18521Эксплойта нет | Divide-by-zero vulnerabilities in the function arlib_add_symbols() in arlib.c in elfutils 0.174 allow remote attackers to cause a denial of elfutils project · elfutils · CWE-369 | Средняя5,5 | — | 1,8 % | 19 окт. 2018 г. |
23Наблюдать | CVE-2017-7610Эксплойта нет | The check_group function in elflint.c in elfutils 0.168 allows remote attackers to cause a denial of service (heap-based buffer over-read anelfutils project · elfutils · CWE-125 | Средняя5,5 | — | 1,8 % | 9 апр. 2017 г. |
23Наблюдать | CVE-2017-7612Эксплойта нет | The check_sysv_hash function in elflint.c in elfutils 0.168 allows remote attackers to cause a denial of service (heap-based buffer over-reaelfutils project · elfutils · CWE-125 | Средняя5,5 | — | 1,8 % | 9 апр. 2017 г. |
23Наблюдать | CVE-2017-7613Эксплойта нет | elflint.c in elfutils 0.168 does not validate the number of sections and the number of segments, which allows remote attackers to cause a deelfutils project · elfutils · CWE-20 | Средняя5,5 | — | 1,7 % | 9 апр. 2017 г. |
23Наблюдать | CVE-2017-7607Эксплойта нет | The handle_gnu_hash function in readelf.c in elfutils 0.168 allows remote attackers to cause a denial of service (heap-based buffer over-reaelfutils project · elfutils · CWE-125 | Средняя5,5 | — | 1,7 % | 9 апр. 2017 г. |
22Наблюдать | CVE-2016-10255Эксплойта нет | The __libelf_set_rawdata_wrlock function in elf_getdata.c in elfutils before 0.168 allows remote attackers to cause a denial of service (craelfutils project · elfutils · CWE-119 | Средняя5,5 | — | 1,7 % | 23 мар. 2017 г. |
22Наблюдать | CVE-2017-7609Эксплойта нет | elf_compress.c in elfutils 0.168 does not validate the zlib compression factor, which allows remote attackers to cause a denial of service (elfutils project · elfutils · CWE-20 | Средняя5,5 | — | 1,6 % | 9 апр. 2017 г. |
22Наблюдать | CVE-2018-16062Эксплойта нет | dwarf_getaranges in dwarf_getaranges.c in libdw in elfutils before 2018-08-18 allows remote attackers to cause a denial of service (heap-baselfutils project · elfutils · CWE-125 | Средняя5,5 | — | 1,6 % | 28 авг. 2018 г. |
22Наблюдать | CVE-2016-10254Эксплойта нет | The allocate_elf function in common.h in elfutils before 0.168 allows remote attackers to cause a denial of service (crash) via a crafted ELelfutils project · elfutils · CWE-119 | Средняя5,5 | — | 1,6 % | 23 мар. 2017 г. |
22Наблюдать | CVE-2019-7146Эксплойта нет | In elfutils 0.175, there is a buffer over-read in the ebl_object_note function in eblobjnote.c in libebl.elfutils project · elfutils · CWE-125 | Средняя5,5 | — | 1,5 % | 28 янв. 2019 г. |
22Наблюдать | CVE-2018-18310Эксплойта нет | An invalid memory address dereference was discovered in dwfl_segment_report_module.c in libdwfl in elfutils through v0.174.elfutils project · elfutils · CWE-119 | Средняя5,5 | — | 1,4 % | 14 окт. 2018 г. |
22Наблюдать | CVE-2019-7150Эксплойта нет | An issue was discovered in elfutils 0.175.elfutils project · elfutils · CWE-125 | Средняя5,5 | — | 1,4 % | 28 янв. 2019 г. |
22Наблюдать | CVE-2019-7665Эксплойта нет | In elfutils 0.175, a heap-based buffer over-read was discovered in the function elf32_xlatetom in elf32_xlatetom.c in libelf.elfutils project · elfutils · CWE-125 | Средняя5,5 | — | 1,3 % | 9 февр. 2019 г. |
22Наблюдать | CVE-2018-16403Эксплойта нет | libdw in elfutils 0.173 checks the end of the attributes list incorrectly in dwarf_getabbrev in dwarf_getabbrev.c and dwarf_hasattr in dwarfelfutils project · elfutils · CWE-125 | Средняя5,5 | — | 1,1 % | 3 сент. 2018 г. |
22Наблюдать | CVE-2019-7664Эксплойта нет | In elfutils 0.175, a negative-sized memcpy is attempted in elf_cvt_note in libelf/note_xlate.h because of an incorrect overflow check.elfutils project · elfutils · CWE-787 | Средняя5,5 | — | 1,0 % | 9 февр. 2019 г. |
22Наблюдать | CVE-2021-33294Эксплойта нет | In elfutils 0.183, an infinite loop was found in the function handle_symtab in readelf.c .Which allows attackers to cause a denial of servicelfutils project · elfutils · CWE-835 | Средняя5,5 | — | 0,3 % | 18 июл. 2023 г. |
- CVE-2018-1640240В плане
libelf/elf_end.c in elfutils 0.173 allows remote attackers to cause a denial of service (double free and application crash) or possibly have
КритическаяCVSS 9,8Эксплойта нетEPSS 4 %elfutils project · elfutils3 сент. 2018 г.
- CVE-2018-876931Наблюдать
elfutils 0.170 has a buffer over-read in the ebl_dynamic_tag_name function of libebl/ebldynamictagname.c because SYMTAB_SHNDX is unsupported
ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %elfutils project · elfutils18 мар. 2018 г.
- CVE-2014-017228Наблюдать
Integer overflow in the check_section function in dwarf_begin_elf.c in the libdw library, as used in elfutils 0.153 and possibly through 0.1
СредняяCVSS 6,8Эксплойта нетEPSS 4 %elfutils project · elfutils11 апр. 2014 г.
- CVE-2014-944727Наблюдать
Directory traversal vulnerability in the read_long_names function in libelf/elf_begin.c in elfutils 0.152 and 0.161 allows remote attackers
СредняяCVSS 6,4Эксплойта нетEPSS 5 %elfutils project · elfutils2 янв. 2015 г.
- CVE-2018-1852027Наблюдать
An Invalid Memory Address Dereference exists in the function elf_end in libelf in elfutils through v0.174.
СредняяCVSS 6,5Эксплойта нетEPSS 3 %elfutils project · elfutils19 окт. 2018 г.
- CVE-2019-714927Наблюдать
A heap-based buffer over-read was discovered in the function read_srclines in dwarf_getsrclines.c in libdw in elfutils 0.175.
СредняяCVSS 6,5Эксплойта нетEPSS 2 %elfutils project · elfutils28 янв. 2019 г.
- CVE-2019-714826Наблюдать
An attempted excessive memory allocation was discovered in the function read_long_names in elf_begin.c in libelf in elfutils 0.174.
СредняяCVSS 6,5Эксплойта нетEPSS 2 %elfutils project · elfutils28 янв. 2019 г.
- CVE-2017-760823Наблюдать
The ebl_object_note_type_name function in eblobjnotetypename.c in elfutils 0.168 allows remote attackers to cause a denial of service (heap-
СредняяCVSS 5,5Эксплойта нетEPSS 2 %elfutils project · elfutils9 апр. 2017 г.
- CVE-2017-761123Наблюдать
The check_symtab_shndx function in elflint.c in elfutils 0.168 allows remote attackers to cause a denial of service (heap-based buffer over-
СредняяCVSS 5,5Эксплойта нетEPSS 2 %elfutils project · elfutils9 апр. 2017 г.
- CVE-2018-1852123Наблюдать
Divide-by-zero vulnerabilities in the function arlib_add_symbols() in arlib.c in elfutils 0.174 allow remote attackers to cause a denial of
СредняяCVSS 5,5Эксплойта нетEPSS 2 %elfutils project · elfutils19 окт. 2018 г.
- CVE-2017-761023Наблюдать
The check_group function in elflint.c in elfutils 0.168 allows remote attackers to cause a denial of service (heap-based buffer over-read an
СредняяCVSS 5,5Эксплойта нетEPSS 2 %elfutils project · elfutils9 апр. 2017 г.
- CVE-2017-761223Наблюдать
The check_sysv_hash function in elflint.c in elfutils 0.168 allows remote attackers to cause a denial of service (heap-based buffer over-rea
СредняяCVSS 5,5Эксплойта нетEPSS 2 %elfutils project · elfutils9 апр. 2017 г.
- CVE-2017-761323Наблюдать
elflint.c in elfutils 0.168 does not validate the number of sections and the number of segments, which allows remote attackers to cause a de
СредняяCVSS 5,5Эксплойта нетEPSS 2 %elfutils project · elfutils9 апр. 2017 г.
- CVE-2017-760723Наблюдать
The handle_gnu_hash function in readelf.c in elfutils 0.168 allows remote attackers to cause a denial of service (heap-based buffer over-rea
СредняяCVSS 5,5Эксплойта нетEPSS 2 %elfutils project · elfutils9 апр. 2017 г.
- CVE-2016-1025522Наблюдать
The __libelf_set_rawdata_wrlock function in elf_getdata.c in elfutils before 0.168 allows remote attackers to cause a denial of service (cra
СредняяCVSS 5,5Эксплойта нетEPSS 2 %elfutils project · elfutils23 мар. 2017 г.
- CVE-2017-760922Наблюдать
elf_compress.c in elfutils 0.168 does not validate the zlib compression factor, which allows remote attackers to cause a denial of service (
СредняяCVSS 5,5Эксплойта нетEPSS 2 %elfutils project · elfutils9 апр. 2017 г.
- CVE-2018-1606222Наблюдать
dwarf_getaranges in dwarf_getaranges.c in libdw in elfutils before 2018-08-18 allows remote attackers to cause a denial of service (heap-bas
СредняяCVSS 5,5Эксплойта нетEPSS 2 %elfutils project · elfutils28 авг. 2018 г.
- CVE-2016-1025422Наблюдать
The allocate_elf function in common.h in elfutils before 0.168 allows remote attackers to cause a denial of service (crash) via a crafted EL
СредняяCVSS 5,5Эксплойта нетEPSS 2 %elfutils project · elfutils23 мар. 2017 г.
- CVE-2019-714622Наблюдать
In elfutils 0.175, there is a buffer over-read in the ebl_object_note function in eblobjnote.c in libebl.
СредняяCVSS 5,5Эксплойта нетEPSS 2 %elfutils project · elfutils28 янв. 2019 г.
- CVE-2018-1831022Наблюдать
An invalid memory address dereference was discovered in dwfl_segment_report_module.c in libdwfl in elfutils through v0.174.
СредняяCVSS 5,5Эксплойта нетEPSS 1 %elfutils project · elfutils14 окт. 2018 г.
- CVE-2019-715022Наблюдать
An issue was discovered in elfutils 0.175.
СредняяCVSS 5,5Эксплойта нетEPSS 1 %elfutils project · elfutils28 янв. 2019 г.
- CVE-2019-766522Наблюдать
In elfutils 0.175, a heap-based buffer over-read was discovered in the function elf32_xlatetom in elf32_xlatetom.c in libelf.
СредняяCVSS 5,5Эксплойта нетEPSS 1 %elfutils project · elfutils9 февр. 2019 г.
- CVE-2018-1640322Наблюдать
libdw in elfutils 0.173 checks the end of the attributes list incorrectly in dwarf_getabbrev in dwarf_getabbrev.c and dwarf_hasattr in dwarf
СредняяCVSS 5,5Эксплойта нетEPSS 1 %elfutils project · elfutils3 сент. 2018 г.
- CVE-2019-766422Наблюдать
In elfutils 0.175, a negative-sized memcpy is attempted in elf_cvt_note in libelf/note_xlate.h because of an incorrect overflow check.
СредняяCVSS 5,5Эксплойта нетEPSS 1 %elfutils project · elfutils9 февр. 2019 г.
- CVE-2021-3329422Наблюдать
In elfutils 0.183, an infinite loop was found in the function handle_symtab in readelf.c .Which allows attackers to cause a denial of servic
СредняяCVSS 5,5Эксплойта нетEPSS 0 %elfutils project · elfutils18 июл. 2023 г.