Описание
In elfutils 0.183, an infinite loop was found in the function handle_symtab in readelf.c .Which allows attackers to cause a denial of service (infinite loop) via crafted file.
A flaw was found in the elfutils tools package. An infinite loop is possible in the handle_symtab function in readelf.c, which may lead to a denial of service.
A vulnerability was found in Elfutils, where an infinite loop in the handle_symtab function within readelf.c can lead to a denial of service, causing the application to become unresponsive and consume excessive system resources indefinitely.
Отчет
This vulnerability is rated as moderate because an infinite loop in Elfutils' handle_symtab function within readelf.c could lead to a denial of service, it does not lead to code execution but it can cause prolonged application unresponsiveness, impacting availability.
Затронутые пакеты
Платформа | Пакет | Состояние | Рекомендация | Релиз |
---|---|---|---|---|
Red Hat Enterprise Linux 6 | elfutils | Out of support scope | ||
Red Hat Enterprise Linux 7 | elfutils | Out of support scope | ||
Red Hat Enterprise Linux 8 | elfutils | Will not fix | ||
Red Hat Enterprise Linux 8 | gcc-toolset-11-elfutils | Not affected | ||
Red Hat Enterprise Linux 9 | elfutils | Not affected | ||
Red Hat Virtualization 4 | elfutils | Not affected |
Показывать по
Дополнительная информация
Статус:
EPSS
6.2 Medium
CVSS3
Связанные уязвимости
In elfutils 0.183, an infinite loop was found in the function handle_symtab in readelf.c .Which allows attackers to cause a denial of service (infinite loop) via crafted file.
In elfutils 0.183, an infinite loop was found in the function handle_symtab in readelf.c .Which allows attackers to cause a denial of service (infinite loop) via crafted file.
In elfutils 0.183, an infinite loop was found in the function handle_s ...
In elfutils 0.183, an infinite loop was found in the function handle_symtab in readelf.c .Which allows attackers to cause a denial of service (infinite loop) via crafted file.
Уязвимость функции handle_symtab компонента readelf.c утилиты для модификации и анализа бинарных файлов ELF Elfutils, позволяющая нарушителю вызвать отказ в обслуживании
EPSS
6.2 Medium
CVSS3