Medium severity5.5NVD Advisory· Published Jan 29, 2019· Updated Jun 17, 2026
CVE-2019-7146
CVE-2019-7146
Description
In elfutils 0.175, there is a buffer over-read in the ebl_object_note function in eblobjnote.c in libebl. Remote attackers could leverage this vulnerability to cause a denial-of-service via a crafted elf file, as demonstrated by eu-readelf.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
13cpe:2.3:a:elfutils_project:elfutils:0.175:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:elfutils_project:elfutils:0.175:*:*:*:*:*:*:*
- (no CPE)range: <=0.175
- osv-coords11 versionspkg:rpm/opensuse/dwarves&distro=openSUSE%20Leap%2015.3pkg:rpm/opensuse/dwarves&distro=openSUSE%20Leap%20Micro%205.2pkg:rpm/opensuse/elfutils&distro=openSUSE%20Leap%2015.3pkg:rpm/opensuse/elfutils&distro=openSUSE%20Leap%20Micro%205.2pkg:rpm/opensuse/elfutils&distro=openSUSE%20Tumbleweedpkg:rpm/suse/dwarves&distro=SUSE%20Linux%20Enterprise%20Micro%205.1pkg:rpm/suse/dwarves&distro=SUSE%20Linux%20Enterprise%20Micro%205.2pkg:rpm/suse/dwarves&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Basesystem%2015%20SP3pkg:rpm/suse/elfutils&distro=SUSE%20Linux%20Enterprise%20Micro%205.1pkg:rpm/suse/elfutils&distro=SUSE%20Linux%20Enterprise%20Micro%205.2pkg:rpm/suse/elfutils&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Basesystem%2015%20SP3
< 1.22-150300.7.3.1+ 10 more
- (no CPE)range: < 1.22-150300.7.3.1
- (no CPE)range: < 1.22-150300.7.3.1
- (no CPE)range: < 0.177-150300.11.3.1
- (no CPE)range: < 0.177-150300.11.3.1
- (no CPE)range: < 0.185-3.1
- (no CPE)range: < 1.22-150300.7.3.1
- (no CPE)range: < 1.22-150300.7.3.1
- (no CPE)range: < 1.22-150300.7.3.1
- (no CPE)range: < 0.177-150300.11.3.1
- (no CPE)range: < 0.177-150300.11.3.1
- (no CPE)range: < 0.177-150300.11.3.1
Patches
Vulnerability mechanics
References
3- sourceware.org/bugzilla/show_bug.cginvdExploitIssue TrackingThird Party Advisory
- sourceware.org/bugzilla/show_bug.cginvdExploitIssue TrackingThird Party Advisory
- access.redhat.com/errata/RHSA-2019:3575nvd
News mentions
0No linked articles in our index yet.