Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Libdwarf
(Libdwarf_project)Repositories | https://github.com/tomhughes/libdwarf |
#Vulnerabilities | 44 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2022-09-02 | CVE-2022-39170 | libdwarf 0.4.1 has a double free in _dwarf_exec_frame_instr in dwarf_frame.c. | Fedora, Libdwarf | 8.8 | ||
2023-04-16 | CVE-2020-27545 | libdwarf before 20201017 has a one-byte out-of-bounds read because of an invalid pointer dereference via an invalid line table in a crafted object. | Libdwarf | 6.5 | ||
2023-04-16 | CVE-2020-28163 | libdwarf before 20201201 allows a dwarf_print_lines.c NULL pointer dereference and application crash via a DWARF5 line-table header that has an invalid FORM for a pathname. | Libdwarf | 6.5 | ||
2022-06-23 | CVE-2022-34299 | There is a heap-based buffer over-read in libdwarf 0.4.0. This issue is related to dwarf_global_formref_b. | Libdwarf | 8.1 | ||
2022-06-02 | CVE-2022-32200 | libdwarf 0.4.0 has a heap-based buffer over-read in _dwarf_check_string_valid in dwarf_util.c. | Libdwarf | 7.8 | ||
2017-01-23 | CVE-2016-7410 | The _dwarf_read_loc_section function in dwarf_loc.c in libdwarf 20160613 allows attackers to cause a denial of service (buffer over-read) via a crafted file. | Libdwarf | 5.5 | ||
2017-06-07 | CVE-2015-8538 | dwarf_leb.c in libdwarf allows attackers to cause a denial of service (SIGSEGV). | Libdwarf | 6.5 | ||
2017-01-31 | CVE-2016-2050 | The get_abbrev_array_info function in libdwarf-20151114 allows remote attackers to cause a denial of service (out-of-bounds write) via a crafted elf file. | Libdwarf | 6.5 | ||
2017-02-13 | CVE-2015-8750 | libdwarf 20151114 and earlier allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a debug_abbrev section marked NOBITS in an ELF file. | Libdwarf | 6.5 | ||
2017-02-15 | CVE-2016-8679 | The _dwarf_get_size_of_val function in libdwarf/dwarf_util.c in Libdwarf before 20161124 allows remote attackers to cause a denial of service (out-of-bounds read) by calling the dwarfdump command on a crafted file. | Libdwarf | 6.5 |