[ubuntu/focal-security] elfutils 0.176-1.1ubuntu0.1 (Accepted)

Camila Camargo de Matos camila.camargodematos at canonical.com
Wed Aug 30 14:52:54 UTC 2023


elfutils (0.176-1.1ubuntu0.1) focal-security; urgency=medium

  * SECURITY UPDATE: infinite loop via a crafted file
    - debian/patches/CVE-2021-33294.patch: fix bounds checks and replace
      asserts with errors in src/readelf.c.
    - CVE-2021-33294
  * SECURITY UPDATE: heap-based buffer overwrite and reachable assertion 
    - debian/patches/CVE-2020-21047.patch: fix bounds checks and replace
      asserts with errors in libcpu/i386_data.h and libcpu/i386_disasm.c.
    - CVE-2020-21047

Date: 2023-08-29 12:43:09.685861+00:00
Changed-By: Camila Camargo de Matos <camila.camargodematos at canonical.com>
https://launchpad.net/ubuntu/+source/elfutils/0.176-1.1ubuntu0.1
-------------- next part --------------
Sorry, changesfile not available.


More information about the Focal-changes mailing list