Directory traversal vulnerability in the read_long_names function in libelf/elf_begin.c in elfutils 0.152 and 0.161 allows remote attackers to write to arbitrary files to the root directory via a / (slash) in a crafted archive, as demonstrated using the ar program.
CVSS Details
- CVSS 3.1 Base Score: 6.5
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade elfutils | Jul 30, 2024 | Jan 2, 2015 |
| Redhat_linux | — | No solution exists | Jul 9, 2025 | Dec 27, 2014 |
| Suse | — | Upgrade libebl1Upgrade libelf-develUpgrade libasm1Upgrade libdw-develUpgrade libdw1-32bitUpgrade libebl-develUpgrade libelf1-32bitUpgrade libasm-develUpgrade libdw1Upgrade libebl1-x86Upgrade libebl1-32bitUpgrade libebl-pluginsUpgrade libasm1-32bitUpgrade elfutils-langUpgrade libebl-plugins-32bitUpgrade libelf1Upgrade libdw1-x86Upgrade elfutilsUpgrade libelf1-x86 | Dec 18, 2015 | Jan 2, 2015 |
| Ubuntu | — | Upgrade libelf1 | Nov 8, 2024 | Jan 2, 2015 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub