The vendor explicitly states that these products are not affected by this CVE.
- elfutils-debuginfod as a component of Red Hat Enterprise Linux 10
- elfutils-debuginfod-client as a component of Red Hat Enterprise Linux 10
- elfutils-debuginfod-client-devel as a component of Red Hat Enterprise Linux 10
- elfutils-default-yama-scope as a component of Red Hat Enterprise Linux 10
- elfutils-devel as a component of Red Hat Enterprise Linux 10
- elfutils-libelf as a component of Red Hat Enterprise Linux 10
- elfutils-libelf-devel as a component of Red Hat Enterprise Linux 10
- elfutils-libs as a component of Red Hat Enterprise Linux 10
- elfutils.src as a component of Red Hat Enterprise Linux 10
- elfutils as a component of Red Hat Enterprise Linux 6
- elfutils-devel as a component of Red Hat Enterprise Linux 6
- elfutils-devel-static as a component of Red Hat Enterprise Linux 6
- Summary
- A flaw was found in GNU elfutils. This vulnerability allows buffer overflow, potentially leading to arbitrary code execution or crashes via manipulation of the 'z/x' argument in the dump_data_section/print_string_section function of readelf.c.
- Remediation
- No remediation text is recorded.
