The __libelf_set_rawdata_wrlock function in elf_getdata.c in elfutils before 0.168 allows remote attackers to cause a denial of service (crash) via a crafted (1) sh_off or (2) sh_size ELF header value, which triggers a memory allocation failure.
References
Configurations
History
No history.
Information
Published : 2017-03-23 16:59
Updated : 2025-04-20 01:37
NVD link : CVE-2016-10255
Mitre link : CVE-2016-10255
CVE.ORG link : CVE-2016-10255
JSON object : View
Products Affected
elfutils_project
- elfutils
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer