Total vulnerabilities in the database
Directory traversal vulnerability in the read_long_names function in libelf/elf_begin.c in elfutils 0.152 and 0.161 allows remote attackers to write to arbitrary files to the root directory via a / (slash) in a crafted archive, as demonstrated using the ar program.
Software | From | Fixed in |
---|---|---|
elfutils_project / elfutils | 0.152 | 0.152.x |
elfutils_project / elfutils | 0.161 | 0.161.x |