PT-2015-6116 · Libunwind+2 · Libunwind+2

Paolo Bonzini

·

Published

2015-08-10

·

Updated

2024-06-15

·

CVE-2015-3239

CVSS v2.0

3.3

Low

VectorAV:L/AC:M/Au:N/C:P/I:P/A:N
Name of the Vulnerable Software and Affected Versions libunwind version 1.1
Description The issue is related to an off-by-one error in the dwarf to unw regnum function, which could potentially cause an error when reading untrusted binaries or dwarf debug info data. It is unlikely that any exploitable attack vector exists in current builds or supported usage.
Recommendations For libunwind version 1.1, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2015-1783
ALT-PU-2021-1103
CVE-2015-3239
DLA-271-1
MGASA-2015-0307
OPENSUSE-SU-2019_0061-1
OPENSUSE-SU-2024:10288-1
RHSA-2015:1675
RHSA-2015:1768
RHSA-2015:1769
SUSE-SU-2019:0284-1
SUSE-SU-2019_0284-1

Affected Products

Alt Linux
Suse
Libunwind