Oval Definition:oval:com.ubuntu.bionic:def:2018185200000000
Revision Date:2018-10-19Version:1
Title:CVE-2018-18520 on Ubuntu 18.04 LTS (bionic) - low.
Description:An Invalid Memory Address Dereference exists in the function elf_end in libelf in elfutils through v0.174. Although eu-size is intended to support ar files inside ar files, handle_ar in size.c closes the outer ar file before handling all inner entries. The vulnerability allows attackers to cause a denial of service (application crash) with a crafted ELF file.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2018-18520
Platform(s):Ubuntu 18.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 18.04 LTS (bionic) is installed.
  • AND elfutils package in bionic was vulnerable but has been fixed (note: '0.170-0.4ubuntu0.1').
  • BACK