Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2019-3575

Опубликовано: 14 нояб. 2019
Источник: oracle-oval
Платформа: Oracle Linux 8

Описание

ELSA-2019-3575: elfutils security, bug fix, and enhancement update (LOW)

[0.176-5]

  • Add elfutils-0.176-strip-symbols-illformed.patch

[0.176-4]

  • Add elfutils-0.176-elf-update.patch (#1717349)

[0.176-3]

  • Rebuilt for annobin change.

[0.176-2]

  • Add elfutils-0.176-xlate-note.patch (#1705138)

[0.176-1]

  • New upstream release.
    • backends: riscv improved core file and return value location support.
    • Fixes CVE-2019-7146, CVE-2019-7148, CVE-2019-7149, CVE-2019-7150, CVE-2019-7664, CVE-2019-7665.

Обновленные пакеты

Oracle Linux 8

Oracle Linux aarch64

elfutils

0.176-5.el8

elfutils-default-yama-scope

0.176-5.el8

elfutils-devel

0.176-5.el8

elfutils-devel-static

0.176-5.el8

elfutils-libelf

0.176-5.el8

elfutils-libelf-devel

0.176-5.el8

elfutils-libelf-devel-static

0.176-5.el8

elfutils-libs

0.176-5.el8

Oracle Linux x86_64

elfutils

0.176-5.el8

elfutils-default-yama-scope

0.176-5.el8

elfutils-devel

0.176-5.el8

elfutils-devel-static

0.176-5.el8

elfutils-libelf

0.176-5.el8

elfutils-libelf-devel

0.176-5.el8

elfutils-libelf-devel-static

0.176-5.el8

elfutils-libs

0.176-5.el8

Связанные уязвимости

suse-cvrf
больше 3 лет назад

Security update for dwarves and elfutils

oracle-oval
больше 6 лет назад

ELSA-2019-2197: elfutils security, bug fix, and enhancement update (LOW)

CVSS3: 5.5
ubuntu
около 7 лет назад

In elfutils 0.175, there is a buffer over-read in the ebl_object_note function in eblobjnote.c in libebl. Remote attackers could leverage this vulnerability to cause a denial-of-service via a crafted elf file, as demonstrated by eu-readelf.

CVSS3: 3.3
redhat
около 7 лет назад

In elfutils 0.175, there is a buffer over-read in the ebl_object_note function in eblobjnote.c in libebl. Remote attackers could leverage this vulnerability to cause a denial-of-service via a crafted elf file, as demonstrated by eu-readelf.

CVSS3: 5.5
nvd
около 7 лет назад

In elfutils 0.175, there is a buffer over-read in the ebl_object_note function in eblobjnote.c in libebl. Remote attackers could leverage this vulnerability to cause a denial-of-service via a crafted elf file, as demonstrated by eu-readelf.