libbpf 0.6.0 and 0.6.1 has a heap-based buffer overflow (8 bytes) in bpf_objectopen (called from bpfobjectopenmem and bpf-object-fuzzer.c).
{
"extracted_events": [
{
"introduced": "0.6.0"
},
{
"last_affected": "0.6.0"
},
{
"introduced": "0.6.1"
},
{
"last_affected": "0.6.1"
}
],
"source": "CPE_STRING",
"cpe": [
"cpe:2.3:a:libbpf_project:libbpf:0.6.0:*:*:*:*:*:*:*",
"cpe:2.3:a:libbpf_project:libbpf:0.6.1:*:*:*:*:*:*:*"
]
}