Libdwarf Project Libdwarf vulnerabilities

45 known vulnerabilities affecting libdwarf_project/libdwarf.

Total CVEs
45
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL6HIGH14MEDIUM24LOW1

Vulnerabilities

Page 3 of 3
CVE-2015-8750MEDIUMCVSS 6.5≥ 1999-12-14, ≤ 2015-11-142017-02-13
CVE-2015-8750 [MEDIUM] CWE-476 CVE-2015-8750: libdwarf 20151114 and earlier allows remote attackers to cause a denial of service (NULL pointer der libdwarf 20151114 and earlier allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a debug_abbrev section marked NOBITS in an ELF file.
nvd
CVE-2016-2050MEDIUMCVSS 6.5v2015-11-142017-01-31
CVE-2016-2050 [MEDIUM] CWE-787 CVE-2016-2050: The get_abbrev_array_info function in libdwarf-20151114 allows remote attackers to cause a denial of The get_abbrev_array_info function in libdwarf-20151114 allows remote attackers to cause a denial of service (out-of-bounds write) via a crafted elf file.
nvd
CVE-2016-7410MEDIUMCVSS 5.5v2016-06-132017-01-23
CVE-2016-7410 [MEDIUM] CWE-125 CVE-2016-7410: The _dwarf_read_loc_section function in dwarf_loc.c in libdwarf 20160613 allows attackers to cause a The _dwarf_read_loc_section function in dwarf_loc.c in libdwarf 20160613 allows attackers to cause a denial of service (buffer over-read) via a crafted file.
nvd
CVE-2016-9480CRITICALCVSS 9.1v2016-10-212016-11-29
CVE-2016-9480 [CRITICAL] CWE-119 CVE-2016-9480: libdwarf 2016-10-21 allows context-dependent attackers to obtain sensitive information or cause a de libdwarf 2016-10-21 allows context-dependent attackers to obtain sensitive information or cause a denial of service by using the "malformed dwarf file" approach, related to a "Heap Buffer Over-read" issue affecting the dwarf_util.c component, aka DW201611-006.
nvd
CVE-2016-2091LOWCVSS 3.3v2015-11-142016-02-08
CVE-2016-2091 [LOW] CWE-125 CVE-2016-2091: The dwarf_read_cie_fde_prefix function in dwarf_frame2.c in libdwarf 20151114 allows attackers to ca The dwarf_read_cie_fde_prefix function in dwarf_frame2.c in libdwarf 20151114 allows attackers to cause a denial of service (out-of-bounds read) via a crafted ELF object file.
nvd
Libdwarf Project Libdwarf vulnerabilities | cvebase