Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [thread-next>] [day] [month] [year] [list]
Date: Tue, 24 May 2016 16:01:42 +0800
From: Yue Liu <liuyue0310@...il.com>
To: oss-security@...ts.openwall.com
Cc: David Anderson <davea42@...uxmail.org>
Subject: CVE request: Multiple vunerabilities in libdwarf & dwarfdump

Hi,

There are multiple vunerabilities in libdwarf&dwarfdump which were
discovered by Yue Liu(lieanu <liuyue0310@...il.com>) and Qixue Xiao.

Vulnerabilities DW201605-001 to DW201605-019 in
https://www.prevanders.net/dwarfbug.html
And anther one https://bugzilla.redhat.com/show_bug.cgi?id=1330237
All vulnerabilities have been fixed in upstream.

POC: https://sourceforge.net/p/libdwarf/regressiontests/ci/master/tree/liu/

Could you please assign CVE ids for these issue? Thanks.

Regards,
Yue Liu

Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.