The dumpblock function in printsections.c in libdwarf before 20160923 allows remote attackers to cause a denial of service (out-of-bounds read) via crafted frame data.
{ "binaries": [ { "binary_name": "dwarfdump", "binary_version": "20120410-2+deb7u2build0.14.04.1" }, { "binary_name": "dwarfdump-dbgsym", "binary_version": "20120410-2+deb7u2build0.14.04.1" }, { "binary_name": "libdwarf-dev", "binary_version": "20120410-2+deb7u2build0.14.04.1" } ], "availability": "No subscription required", "ubuntu_priority": "untriaged" }
{ "binaries": [ { "binary_name": "dwarfdump", "binary_version": "20120410-2+deb7u2build0.16.04.1" }, { "binary_name": "dwarfdump-dbgsym", "binary_version": "20120410-2+deb7u2build0.16.04.1" }, { "binary_name": "libdwarf-dev", "binary_version": "20120410-2+deb7u2build0.16.04.1" } ], "availability": "No subscription required", "ubuntu_priority": "untriaged" }