CVE-2016-8680

Severity CVSS v4.0:
Pending analysis
Type:
CWE-125 Out-of-bounds Read
Publication date:
15/02/2017
Last modified:
20/04/2025

Description

The _dwarf_get_abbrev_for_code function in dwarf_util.c in libdwarf 20161001 and earlier allows remote attackers to cause a denial of service (out-of-bounds read) by calling the dwarfdump command on a crafted file.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:libdwarf_project:libdwarf:*:*:*:*:*:*:*:* 1999-12-14 (including) 2016-10-01 (including)