Upx · Upx · CVE-2021-20285
Name of the Vulnerable Software and Affected Versions:
UPX version 3.96
Description:
A flaw was found in upx canPack in p lx elf.cpp. This flaw allows attackers to cause a denial of service (SEGV or buffer overflow and application crash) or possibly have unspecified other impacts via a crafted ELF. The highest threat from this vulnerability is to system availability.
Recommendations:
For UPX version 3.96, consider updating to a newer version that contains a fix for this issue, as the current version is affected. At the moment, there is no information about a newer version that contains a fix for this vulnerability.