Red Hat Bugzilla – Bug 1642604
CVE-2018-18310 elfutils: invalid memory address dereference was discovered in dwfl_segment_report_module.c in libdwfl
Last modified: 2018-10-24 15:38:14 EDT
A flaw was found in elfutils through v0.174. An invalid memory address dereference was discovered in dwfl_segment_report_module.c in libdwfl. The vulnerability allows attackers to cause a denial of service (application crash) with a crafted ELF file, as demonstrated by consider_notes. References: https://sourceware.org/bugzilla/show_bug.cgi?id=23752 https://sourceware.org/ml/elfutils-devel/2018-q4/msg00022.html
Created elfutils tracking bugs for this issue: Affects: fedora-all [bug 1642605]