CVE-2016-5041
published 2017-04-10CVE-2016-5041: dwarf_macro5.c in libdwarf before 20160923 allows remote attackers to cause a denial of service (NULL pointer dereference) via a debugging information entry…
PriorityP434high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
EPSS
3.37%
87.4th percentile
dwarf_macro5.c in libdwarf before 20160923 allows remote attackers to cause a denial of service (NULL pointer dereference) via a debugging information entry using DWARF5 and without a DW_AT_name.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | dwarfutils | < dwarfutils 20160507-1 (bookworm) | dwarfutils 20160507-1 (bookworm) |
| libdwarf_project | libdwarf | >= 1999-12-14 < 2016-09-23 | 2016-09-23 |
CVSS provenance
nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
osv7.5HIGH
vendor_debian7.5HIGH
vendor_redhat7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-wpr2-jmm7-j55j: dwarf_macro5
ghsa_unreviewed·2022-05-13
CVE-2016-5041 [HIGH] CWE-476 GHSA-wpr2-jmm7-j55j: dwarf_macro5
dwarf_macro5.c in libdwarf before 20160923 allows remote attackers to cause a denial of service (NULL pointer dereference) via a debugging information entry using DWARF5 and without a DW_AT_name.
OSV
CVE-2016-5041: dwarf_macro5
osv·2017-04-10·CVSS 7.5
CVE-2016-5041 [HIGH] CVE-2016-5041: dwarf_macro5
dwarf_macro5.c in libdwarf before 20160923 allows remote attackers to cause a denial of service (NULL pointer dereference) via a debugging information entry using DWARF5 and without a DW_AT_name.
Red Hat
libdwarf: Null pointer dereference in _dwarf_file_name_is_full_path()
vendor_redhat·2016-05-04·CVSS 7.5
CVE-2016-5041 [HIGH] CWE-476 libdwarf: Null pointer dereference in _dwarf_file_name_is_full_path()
libdwarf: Null pointer dereference in _dwarf_file_name_is_full_path()
dwarf_macro5.c in libdwarf before 20160923 allows remote attackers to cause a denial of service (NULL pointer dereference) via a debugging information entry using DWARF5 and without a DW_AT_name.
Package: libdwarf (Red Hat Enterprise Linux 7) - Will not fix
Debian
CVE-2016-5041: dwarfutils - dwarf_macro5.c in libdwarf before 20160923 allows remote attackers to cause a de...
vendor_debian·2016·CVSS 7.5
CVE-2016-5041 [HIGH] CVE-2016-5041: dwarfutils - dwarf_macro5.c in libdwarf before 20160923 allows remote attackers to cause a de...
dwarf_macro5.c in libdwarf before 20160923 allows remote attackers to cause a denial of service (NULL pointer dereference) via a debugging information entry using DWARF5 and without a DW_AT_name.
Scope: local
bookworm: resolved (fixed in 20160507-1)
bullseye: resolved (fixed in 20160507-1)
forky: resolved (fixed in 20160507-1)
sid: resolved (fixed in 20160507-1)
trixie: resolved (fixed in 20160507-1)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2016-5041 libdwarf: Null pointer dereference in _dwarf_file_name_is_full_path()
bugzilla·2016-05-26·CVSS 7.5
CVE-2016-5041 [HIGH] CVE-2016-5041 libdwarf: Null pointer dereference in _dwarf_file_name_is_full_path()
CVE-2016-5041 libdwarf: Null pointer dereference in _dwarf_file_name_is_full_path()
A vulnerability was found in libdwarf. If no DW_AT_name is present in a debugging information entry using DWARF5 macros a null dereference in dwarf_macro5.c will crash the application.
References:
http://seclists.org/oss-sec/2016/q2/393
External references:
https://www.prevanders.net/dwarfbug.html
Upstream fix:
https://sourceforge.net/p/libdwarf/code/ci/98a3da1e8237fe0d45b67ef77f3fa5ed9ff0215f
Discussion:
Already fixed in Fedora.
Bugzilla
CVE-2015-5041 IBM JDK: J9 JVM allows code to invoke non-public interface methods
bugzilla·2016-01-28·CVSS 9.1
CVE-2015-5041 [CRITICAL] CVE-2015-5041 IBM JDK: J9 JVM allows code to invoke non-public interface methods
CVE-2015-5041 IBM JDK: J9 JVM allows code to invoke non-public interface methods
The following flaw was reported for IBM JDK:
A flaw in the IBM J9 JVM allows code to invoke non-public interface methods under certain circumstances. Untrusted code could potentially exploit this. This could lead to sensitive data being exposed to an attacker, or the attacker being able to inject bad data.
http://www-01.ibm.com/support/docview.wss?uid=swg21974193
http://www.ibm.com/developerworks/java/jdk/alerts/#IBM_Security_Update_January_2016
This flaw could allow an untrusted Java application or applet to bypass certain Java sandbox restrictions.
Issue was fixed in IBM JDK 6 SR16-FP20, 7 SR9-FP30, 7R1 SR3-FP30, and 8 SR2-FP10.
Discussion:
This issue has been addressed in the following products:
Sup
http://www.openwall.com/lists/oss-security/2016/05/24/1http://www.openwall.com/lists/oss-security/2016/05/25/1https://www.prevanders.net/dwarfbug.htmlhttp://www.openwall.com/lists/oss-security/2016/05/24/1http://www.openwall.com/lists/oss-security/2016/05/25/1https://www.prevanders.net/dwarfbug.html
2017-04-10
Published