Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2024-2002

Опубликовано: 18 мар. 2024
Источник: debian

Описание

A double-free vulnerability was found in libdwarf. In a multiply-corrupted DWARF object, libdwarf may try to dealloc(free) an allocation twice, potentially causing unpredictable and various results.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
dwarfutilsfixed1:0.11.1-1~exp1experimentalpackage
dwarfutilsfixed1:0.11.1-1package
dwarfutilsno-dsabookwormpackage
dwarfutilsno-dsabullseyepackage
dwarfutilsno-dsabusterpackage

Примечания

  • https://www.prevanders.net/dwarfbug.html#DW202402-002

  • Fixed by: https://github.com/davea42/libdwarf-code/commit/404e6b1b14f60c81388d50b4239f81d461b3c3ad (v0.9.2)

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 1 года назад

A double-free vulnerability was found in libdwarf. In a multiply-corrupted DWARF object, libdwarf may try to dealloc(free) an allocation twice, potentially causing unpredictable and various results.

CVSS3: 7.5
redhat
больше 1 года назад

A double-free vulnerability was found in libdwarf. In a multiply-corrupted DWARF object, libdwarf may try to dealloc(free) an allocation twice, potentially causing unpredictable and various results.

CVSS3: 7.5
nvd
больше 1 года назад

A double-free vulnerability was found in libdwarf. In a multiply-corrupted DWARF object, libdwarf may try to dealloc(free) an allocation twice, potentially causing unpredictable and various results.

CVSS3: 7.5
msrc
больше 1 года назад

Описание отсутствует

CVSS3: 7.5
redos
9 месяцев назад

Уязвимость libdwarf