Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2022-32200

Опубликовано: 02 июн. 2022
Источник: debian

Описание

libdwarf 0.4.0 has a heap-based buffer over-read in _dwarf_check_string_valid in dwarf_util.c.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
dwarfutilsfixed1:0.11.1-1~exp1experimentalpackage
dwarfutilsfixed1:0.11.1-1package
dwarfutilsignoredbookwormpackage
dwarfutilsno-dsabullseyepackage
dwarfutilsno-dsabusterpackage
dwarfutilsno-dsastretchpackage

Примечания

  • Fixed by: https://github.com/davea42/libdwarf-code/commit/8151575a6ace77d005ca5bb5d71c1bfdba3f7069 (libdwarf-0.4.1)

  • https://github.com/davea42/libdwarf-code/issues/116

  • https://www.prevanders.net/dwarfbug.html#DW202205-001

Связанные уязвимости

CVSS3: 7.8
ubuntu
больше 3 лет назад

libdwarf 0.4.0 has a heap-based buffer over-read in _dwarf_check_string_valid in dwarf_util.c.

CVSS3: 7.8
nvd
больше 3 лет назад

libdwarf 0.4.0 has a heap-based buffer over-read in _dwarf_check_string_valid in dwarf_util.c.

CVSS3: 7.8
github
больше 3 лет назад

libdwarf 0.4.0 has a heap-based buffer over-read in _dwarf_check_string_valid in dwarf_util.c.