Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2021-20285

Опубликовано: 26 мар. 2021
Источник: debian
EPSS Низкий

Описание

A flaw was found in upx canPack in p_lx_elf.cpp in UPX 3.96. This flaw allows attackers to cause a denial of service (SEGV or buffer overflow and application crash) or possibly have unspecified other impacts via a crafted ELF. The highest threat from this vulnerability is to system availability.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
upx-uclfixed4.2.2-1package

Примечания

  • https://github.com/upx/upx/issues/421

  • https://github.com/upx/upx/commit/13bc031163863cb3866aa6cdc018dff0697aa5d4 (v3.99)

EPSS

Процентиль: 47%
0.00237
Низкий

Связанные уязвимости

CVSS3: 6.6
ubuntu
почти 5 лет назад

A flaw was found in upx canPack in p_lx_elf.cpp in UPX 3.96. This flaw allows attackers to cause a denial of service (SEGV or buffer overflow and application crash) or possibly have unspecified other impacts via a crafted ELF. The highest threat from this vulnerability is to system availability.

CVSS3: 6.6
nvd
почти 5 лет назад

A flaw was found in upx canPack in p_lx_elf.cpp in UPX 3.96. This flaw allows attackers to cause a denial of service (SEGV or buffer overflow and application crash) or possibly have unspecified other impacts via a crafted ELF. The highest threat from this vulnerability is to system availability.

CVSS3: 6.6
github
больше 3 лет назад

A flaw was found in upx canPack in p_lx_elf.cpp in UPX 3.96. This flaw allows attackers to cause a denial of service (SEGV or buffer overflow and application crash) or possibly have unspecified other impacts via a crafted ELF. The highest threat from this vulnerability is to system availability.

suse-cvrf
почти 3 года назад

Security update for upx

EPSS

Процентиль: 47%
0.00237
Низкий