CVE-2017-7607 PUBLISHED

The handle_gnu_hash function in readelf.c in elfutils 0.168 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted ELF file.

EPSS 0.60% · 69.4th percentile

Risk Scores

EPSS Score
0.60%
69.4th percentile

Affected Products

VendorProductVersions
Ubuntu:14.04:LTSelfutils0, 0.157-1ubuntu1, 0.158-0ubuntu3
Ubuntu:18.04:LTSelfutils0.170-0.3, 0, 0.170-0.1
Ubuntu:16.04:LTSelfutils0.165-3, 0.165-3ubuntu1, 0

Timeline

References

Open in Interactive Console →