PT-2020-10775 · Upx Team+1 · Upx+1

Freebufdaolang

+1

·

Published

2020-06-01

·

Updated

2025-04-11

·

CVE-2019-20805

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions UPX versions prior to 3.96
Description The issue arises from an integer overflow in the p lx elf.cpp file during the unpacking process, specifically when encountering crafted values in a PT DYNAMIC segment.
Recommendations For versions prior to 3.96, update to version 3.96 or later to resolve the issue.

Fix

Integer Overflow

Weakness Enumeration

Related Identifiers

ALT-PU-2020-2910
ALT-PU-2020-2930
CVE-2019-20805
ROSA-SA-2023-2260

Affected Products

Alt Linux
Upx