CVE-2020-27787: Buffer Overflow
Published Aug 18, 2022
·Updated
A Segmentaation fault was found in UPX in invertptdynamic() function in plxelf.cpp. An attacker with a crafted input file allows invalid memory address access that could lead to a denial of service.
Affected Software
1 affected component
Upx Project Upx<3.96
Remediation
Patch Available
Event History
Aug 18, 2022
CVE Published
via MITRE·06:34 PM
Data Sourced
via MITRE·06:34 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2020-27787.
2
What is the severity level of CVE-2020-27787?
CVE-2020-27787 has a severity level of medium (5.5).
3
How does this vulnerability occur?
This vulnerability occurs due to a segmentation fault found in UPX in the invert_pt_dynamic() function in p_lx_elf.cpp.
4
What can an attacker do with this vulnerability?
An attacker with a crafted input file can exploit this vulnerability to gain access to invalid memory addresses, potentially leading to a denial of service.
5
Is there a fix available for CVE-2020-27787?
Yes, a fix for CVE-2020-27787 is available. Please refer to the provided references for more information.