oss-sec mailing list archives

CVE request: Multiple vunerabilities in libdwarf & dwarfdump


From: Yue Liu <liuyue0310 () gmail com>
Date: Tue, 24 May 2016 16:01:42 +0800

Hi,

There are multiple vunerabilities in libdwarf&dwarfdump which were
discovered by Yue Liu(lieanu <liuyue0310 () gmail com>) and Qixue Xiao.

Vulnerabilities DW201605-001 to DW201605-019 in
https://www.prevanders.net/dwarfbug.html
And anther one https://bugzilla.redhat.com/show_bug.cgi?id=1330237
All vulnerabilities have been fixed in upstream.

POC: https://sourceforge.net/p/libdwarf/regressiontests/ci/master/tree/liu/

Could you please assign CVE ids for these issue? Thanks.

Regards,
Yue Liu

Current thread: