Security Advisory

CVE-2018-18521

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2018-10-19 17:00:00
Last updated 2024-08-05 11:15:58
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Divide-by-zero vulnerabilities in the function arlib_add_symbols() in arlib.c in elfutils 0.174 allow remote attackers to cause a denial of service (application crash) with a crafted ELF file, as demonstrated by eu-ranlib, because a zero sh_entsize is mishandled.