Medium severity6.5NVD Advisory· Published Apr 16, 2023· Updated Jun 17, 2026
CVE-2020-28163
CVE-2020-28163
Description
libdwarf before 20201201 allows a dwarf_print_lines.c NULL pointer dereference and application crash via a DWARF5 line-table header that has an invalid FORM for a pathname.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4cpe:2.3:a:libdwarf_project:libdwarf:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:libdwarf_project:libdwarf:*:*:*:*:*:*:*:*range: <2020-12-01
- (no CPE)range: <20201201
- libdwarf/libdwarfdescription
Patches
Vulnerability mechanics
References
4- github.com/davea42/libdwarf-code/commit/faf99408e3f9f706fc3809dd400e831f989778d3nvdPatch
- bugzilla.redhat.com/show_bug.cginvdIssue TrackingPermissions RequiredThird Party Advisory
- www.prevanders.net/dwarfbug.htmlnvdThird Party Advisory
- web.archive.org/web/20190601140703/https://sourceforge.net/projects/libdwarf/nvdProduct
News mentions
0No linked articles in our index yet.