libelf/elf_end.c in elfutils 0.173 allows remote...
Critical severity
Unreviewed
Published
May 13, 2022
to the GitHub Advisory Database
•
Updated Feb 1, 2023
Description
Published by the National Vulnerability Database
Sep 3, 2018
Published to the GitHub Advisory Database
May 13, 2022
Last updated
Feb 1, 2023
libelf/elf_end.c in elfutils 0.173 allows remote attackers to cause a denial of service (double free and application crash) or possibly have unspecified other impact because it tries to decompress twice.
References