Re: OpenBSD /usr/bin/readelf does not properly validate input.

2017-01-17 Thread Sebastien Marie
Hi, On Tue, Jan 17, 2017 at 08:41:10AM -0500, Marshall Whittaker wrote: > The /usr/bin/readelf binary on OpenBSD 6.0 does not seem to properly > validate input. > You can for example cat a binary and take the first few "lines" of the file > and throw them at readelf, > which will cause a sig

Re: OpenBSD /usr/bin/readelf does not properly validate input.

2017-01-17 Thread Stuart Henderson
On 2017/01/17 08:41, Marshall Whittaker wrote: > >Synopsis: OpenBSD's readelf does not properly validate input. > >Category: system > >Environment: > System : OpenBSD 6.0 > Details : OpenBSD 6.0 (GENERIC) #2148: Tue Jul 26 12:55:20 MDT 2016 >

OpenBSD /usr/bin/readelf does not properly validate input.

2017-01-17 Thread Marshall Whittaker
>Synopsis: OpenBSD's readelf does not properly validate input. >Category: system >Environment: System : OpenBSD 6.0 Details : OpenBSD 6.0 (GENERIC) #2148: Tue Jul 26 12:55:20 MDT 2016 dera...@amd64.openbsd.org:/usr/src/sys/arch/amd64/compile/GENERIC Architecture: OpenBSD.amd64 Machine