CVE-2018-11243

Severity CVSS v4.0:
Pending analysis
Type:
CWE-415 Double Free
Publication date:
18/05/2018
Last modified:
11/04/2025

Description

PackLinuxElf64::unpack in p_lx_elf.cpp in UPX 3.95 allows remote attackers to cause a denial of service (double free), limit the ability of a malware scanner to operate on the entire original data, or possibly have unspecified other impact via a crafted file.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:upx:upx:3.95:*:*:*:*:*:*:*