elfspirit is an ELF static analysis and injection framework that parses, manipulates, and camouflages ELF files. When analyzing the ELF file format in versions prior to 1.1, there is an out-of-bounds read bug, which can lead to application crashes or information leakage. By constructing a special format ELF file, the information of any address can be leaked. elfspirit version 1.1 contains a patch for this issue.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: GitHub_M

Published: 2022-01-24T19:50:11

Updated: 2024-08-03T02:53:34.800Z

Reserved: 2021-11-16T00:00:00

Link: CVE-2022-21711

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2022-01-24T20:15:08.657

Modified: 2023-02-16T17:07:59.567

Link: CVE-2022-21711

cve-icon Redhat

No data.