An out-of-bounds read access vulnerability was discovered in UPX in PackLinuxElf64::canPack() function of p_lx_elf.cpp file. An attacker with a crafted input file could trigger this issue that could cause a crash leading to a denial of service.
References
Link Resource
https://github.com/upx/upx/commit/1bb93d4fce9f1d764ba57bf5ac154af515b3fc83 Patch Third Party Advisory
https://github.com/upx/upx/issues/332 Exploit Issue Tracking Patch Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: redhat

Published: 2022-08-18T19:05:00

Updated: 2022-08-18T19:05:00

Reserved: 2020-10-27T00:00:00


Link: CVE-2020-27788

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2022-08-18T20:15:08.947

Modified: 2022-08-22T19:23:55.440


Link: CVE-2020-27788

JSON object: View

cve-icon Redhat Information

No data.

CWE