CVE-2020-21047

The libcpu component which is used by libasm of elfutils version 0.177 (git 47780c9e), suffers from denial-of-service vulnerability caused by application crashes due to out-of-bounds write (CWE-787), off-by-one error (CWE-193) and reachable assertion (CWE-617); to exploit the vulnerability, the attackers need to craft certain ELF files which bypass the missing bound checks.
Configurations

Configuration 1 (hide)

cpe:2.3:a:elfutils_project:elfutils:0.177:*:*:*:*:*:*:*

History

No history.

Information

Published : 2023-08-22 19:16

Updated : 2023-11-07 03:19


NVD link : CVE-2020-21047

Mitre link : CVE-2020-21047

CVE.ORG link : CVE-2020-21047


JSON object : View

Products Affected

elfutils_project

  • elfutils
CWE
CWE-787

Out-of-bounds Write