Issue 441055980: elfutils:fuzz-libdwfl: Heap-buffer-overflow in gelf_getshdr

buganizer-system@google.com buganizer-system@google.com
Sun Sep 7 09:01:35 GMT 2025


Replying to this email means your email address will be shared with the
team that works on this product.
https://issues.oss-fuzz.com/issues/441055980

Changed
status:  New → Verified
assignee:  <none> → cl...@appspot.gserviceaccount.com
verifier:  <none> → cl...@appspot.gserviceaccount.com

87...@developer.gserviceaccount.com added comment #3:
ClusterFuzz testcase 5433808192339968 is verified as fixed in
https://oss-fuzz.com/revisions?job=libfuzzer_asan_elfutils&range=202509061801:202509070000

If this is incorrect, please file a bug on
https://github.com/google/oss-fuzz/issues/new
_______________________________

Reference Info: 441055980 elfutils:fuzz-libdwfl: Heap-buffer-overflow in
gelf_getshdr
component:  Public Trackers > 1362134 > OSS Fuzz
status:  Verified
reporter:  87...@developer.gserviceaccount.com
assignee:  cl...@appspot.gserviceaccount.com
verifier:  cl...@appspot.gserviceaccount.com
cc:  da...@adalogics.com, elfutils-devel@sourceware.org, ev...@gmail.com,
and 1 more
collaborators:  co...@oss-fuzz.com
type:  Vulnerability
access level:  Default access
priority:  P2
severity:  S2
hotlist:  Reproducible, Stability-Memory-AddressSanitizer
retention:  Component default
Project:  elfutils
Reported:  Aug 25, 2025


Generated by Google IssueTracker notification system.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://sourceware.org/pipermail/elfutils-devel/attachments/20250907/4df62ddc/attachment.htm>


More information about the Elfutils-devel mailing list