Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2016-10255

Опубликовано: 09 нояб. 2016
Источник: redhat
CVSS3: 3.3
EPSS Низкий

Описание

The __libelf_set_rawdata_wrlock function in elf_getdata.c in elfutils before 0.168 allows remote attackers to cause a denial of service (crash) via a crafted (1) sh_off or (2) sh_size ELF header value, which triggers a memory allocation failure.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5elfutilsWill not fix
Red Hat Enterprise Linux 6elfutilsWill not fix
Red Hat Enterprise Linux 7elfutilsWill not fix

Показывать по

Дополнительная информация

Статус:

Low
https://bugzilla.redhat.com/show_bug.cgi?id=1435182elfutils: Memory allocation failure in __libelf_set_rawdata_wrlock (elf_getdata.c)

EPSS

Процентиль: 75%
0.01652
Низкий

3.3 Low

CVSS3

Связанные уязвимости

CVSS3: 5.5
ubuntu
больше 9 лет назад

The __libelf_set_rawdata_wrlock function in elf_getdata.c in elfutils before 0.168 allows remote attackers to cause a denial of service (crash) via a crafted (1) sh_off or (2) sh_size ELF header value, which triggers a memory allocation failure.

CVSS3: 5.5
nvd
больше 9 лет назад

The __libelf_set_rawdata_wrlock function in elf_getdata.c in elfutils before 0.168 allows remote attackers to cause a denial of service (crash) via a crafted (1) sh_off or (2) sh_size ELF header value, which triggers a memory allocation failure.

CVSS3: 5.5
debian
больше 9 лет назад

The __libelf_set_rawdata_wrlock function in elf_getdata.c in elfutils ...

CVSS3: 5.5
github
больше 4 лет назад

The __libelf_set_rawdata_wrlock function in elf_getdata.c in elfutils before 0.168 allows remote attackers to cause a denial of service (crash) via a crafted (1) sh_off or (2) sh_size ELF header value, which triggers a memory allocation failure.

suse-cvrf
около 7 лет назад

Security update for elfutils

EPSS

Процентиль: 75%
0.01652
Низкий

3.3 Low

CVSS3