libbpf 0.6.0 and 0.6.1 has a heap-based buffer overflow (8 bytes) in __bpf_object__open (called from bpf_object__open_mem and bpf-object-fuzzer.c).
References
| Link | Resource |
|---|---|
| https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=40957 | Exploit Issue Tracking Third Party Advisory |
| https://github.com/google/oss-fuzz-vulns/blob/main/vulns/libbpf/OSV-2021-1576.yaml | Exploit Third Party Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2021-12-31 17:15
Updated : 2022-01-11 10:18
NVD link : CVE-2021-45941
Mitre link : CVE-2021-45941
JSON object : View
CWE
CWE-787
Out-of-bounds Write
Products Affected
libbpf_project
- libbpf


