CVE-2020-27788

Severity CVSS v4.0:
Pending analysis
Type:
CWE-125 Out-of-bounds Read
Publication date:
18/08/2022
Last modified:
11/04/2025

Description

An out-of-bounds read access vulnerability was discovered in UPX in PackLinuxElf64::canPack() function of p_lx_elf.cpp file. An attacker with a crafted input file could trigger this issue that could cause a crash leading to a denial of service.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:upx:upx:*:*:*:*:*:*:*:* 3.96 (excluding)