libdwarf 0.4.1 has a double free in _dwarf_exec_frame_instr in dwarf_frame.c.
The product calls free() twice on the same memory address, potentially leading to modification of unexpected memory locations.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Libdwarf | Libdwarf_project | 0.4.1 (including) | 0.4.1 (including) |
Dwarfutils | Ubuntu | bionic | * |
Dwarfutils | Ubuntu | kinetic | * |
Dwarfutils | Ubuntu | lunar | * |
Dwarfutils | Ubuntu | mantic | * |
Dwarfutils | Ubuntu | trusty | * |
Dwarfutils | Ubuntu | xenial | * |