CVE-2018-16402: Double Free
Elfutils through version 0.173 is vulnerable to a double-free in the libelf/elfend.c:elfend() function due to the decompression of section data multiple times.. An attacker could exploit this to cause a crash or possibly have unspecified other impact via a crafted ELF.
Upstream Bug:
https://sourceware.org/bugzilla/showbug.cgi?id=23528
Upstream Patch:
https://sourceware.org/git/?p=elfutils.git;a=patch;h=56b18521fb8d46d40fc090c0de9d11a08bc982fa
Other sources
libelf/elfend.c in elfutils 0.173 allows remote attackers to cause a denial of service (double free and application crash) or possibly have unspecified other impact because it tries to decompress twice.
— Launchpad
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2018-16402?
CVE-2018-16402 has a medium severity rating due to the potential for a crash or other unspecified impacts.
How do I fix CVE-2018-16402?
To fix CVE-2018-16402, upgrade to elfutils version 0.183-1 or later.
Which software versions are affected by CVE-2018-16402?
CVE-2018-16402 affects elfutils through version 0.173.
Can CVE-2018-16402 be exploited remotely?
CVE-2018-16402 could potentially be exploited via crafted ELF files, which may be processed by vulnerable systems.
What systems are vulnerable to CVE-2018-16402?
Vulnerable systems include Debian 9.0, Red Hat Enterprise Linux 7.0, openSUSE Leap 15.0 and 15.1, and Ubuntu 16.04, 18.04, and 18.10.