Vulnerability Description
dwarf_elf_load_headers.c in libdwarf before 2019-07-05 allows attackers to cause a denial of service (division by zero) via an ELF file with a zero-size section group (SHT_GROUP), as demonstrated by dwarfdump.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Libdwarf Project | Libdwarf | < 2019-07-05 |
Related Weaknesses (CWE)
References
- http://www.securityfocus.com/bid/109380Third Party AdvisoryVDB Entry
- https://sourceforge.net/p/libdwarf/code/ci/cb7198abde46c2ae29957ad460da6886eaa60PatchThird Party Advisory
- https://sourceforge.net/p/libdwarf/code/merge-requests/4/PatchThird Party Advisory
- http://www.securityfocus.com/bid/109380Third Party AdvisoryVDB Entry
- https://sourceforge.net/p/libdwarf/code/ci/cb7198abde46c2ae29957ad460da6886eaa60PatchThird Party Advisory
- https://sourceforge.net/p/libdwarf/code/merge-requests/4/PatchThird Party Advisory
FAQ
What is CVE-2019-14249?
CVE-2019-14249 is a vulnerability with a CVSS score of 6.5 (MEDIUM). dwarf_elf_load_headers.c in libdwarf before 2019-07-05 allows attackers to cause a denial of service (division by zero) via an ELF file with a zero-size section group (SHT_GROUP), as demonstrated by d...
How severe is CVE-2019-14249?
CVE-2019-14249 has been rated MEDIUM with a CVSS base score of 6.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2019-14249?
Check the references section above for vendor advisories and patch information. Affected products include: Libdwarf Project Libdwarf.