UbuntuUpdates.org

Package "elfutils"

Name: elfutils

Description:

collection of utilities to handle ELF objects

Latest version: 0.176-1.1ubuntu0.1
Release: focal (20.04)
Level: updates
Repository: main
Homepage: https://sourceware.org/elfutils/

Links


Download "elfutils"


Other versions of "elfutils" in Focal

Repository Area Version
base main 0.176-1.1build1
security main 0.176-1.1ubuntu0.1

Packages in group

Deleted packages are displayed in grey.


Changelog

Version: 0.176-1.1ubuntu0.1 2023-08-30 19:06:46 UTC

  elfutils (0.176-1.1ubuntu0.1) focal-security; urgency=medium

  * SECURITY UPDATE: infinite loop via a crafted file
    - debian/patches/CVE-2021-33294.patch: fix bounds checks and replace
      asserts with errors in src/readelf.c.
    - CVE-2021-33294
  * SECURITY UPDATE: heap-based buffer overwrite and reachable assertion
    - debian/patches/CVE-2020-21047.patch: fix bounds checks and replace
      asserts with errors in libcpu/i386_data.h and libcpu/i386_disasm.c.
    - CVE-2020-21047

 -- Camila Camargo de Matos <email address hidden> Mon, 28 Aug 2023 14:26:02 -0300

CVE-2021-33294 In elfutils 0.183, an infinite loop was found in the function handle_symtab in readelf.c .Which allows attackers to cause a denial of service (infini
CVE-2020-21047 The libcpu component which is used by libasm of elfutils version 0.177 (git 47780c9e), suffers from denial-of-service vulnerability caused by applica



About   -   Send Feedback to @ubuntu_updates