In elfutils 0.183, an infinite loop was found in the function handle_symtab in readelf.c .Which allows attackers to cause a denial of service (infinite loop) via crafted file..This CVE has a CVSS3.1 score of 5.5 and a Base Severity of MEDIUM.
Info | Details |
---|---|
CVE ID | CVE-2021-33294 |
CVE State | PUBLISHED |
BaseScore | NA |
BaseSeverity | NA |
VectorString | NA |
Version | NA |
References for CVE-2021-33294 :
https://sourceware.org/bugzilla/show_bug.cgi?id=27501
https://sourceware.org/pipermail/elfutils-devel/2021q1/003607.html
Metric Type | Metric Score |
---|---|
AttackVector(AV) | NA |
AttackComplexity(AC) | NA |
PrivilegesRequired(PR) | NA |
UserInteraction(UI) | NA |
Scope(S) | NA |
Confidentiality(C) | NA |
Availability(A) | NA |
Integrity(I) | NA |