CVE-2018-8769: High severity Elfutils Project Elfutils vulnerability
Published Mar 18, 2018
·Updated
elfutils 0.170 has a buffer over-read in the ebldynamictagname function of libebl/ebldynamictagname.c because SYMTABSHNDX is unsupported.
Affected Software
1 affected component
Elfutils Project Elfutils=0.170
Remediation
Patch Available
Event History
Mar 18, 2018
CVE Published
via MITRE·06:00 AM
Data Sourced
via MITRE·06:00 AM
Description
Data Sourced
via NVD·06:29 AM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2018-8769?
CVE-2018-8769 has been assigned a medium severity rating due to its buffer over-read vulnerability.
2
How do I fix CVE-2018-8769?
To address CVE-2018-8769, upgrade to a version of elfutils later than 0.170 that mitigates this vulnerability.
3
What systems are affected by CVE-2018-8769?
CVE-2018-8769 specifically affects elfutils version 0.170.
4
What does the CVE-2018-8769 vulnerability involve?
CVE-2018-8769 involves a buffer over-read in the ebl_dynamic_tag_name function due to unsupported SYMTAB_SHNDX.
5
Who is responsible for maintaining fixes related to CVE-2018-8769?
The elfutils project is responsible for addressing and providing fixes related to CVE-2018-8769.