Headline
CVE-2023-26924: CVE-2023-26924 description
LLVM a0dab4950 has a segmentation fault in mlir::outlineSingleBlockRegion.
[description]
llvm-project commit a0dab4950 is vulnerable to Buffer Overflow via
mlir::outlineSingleBlockRegion.
------------------------------------------
[Vulnerability Type]
Buffer Overflow
------------------------------------------
[Vendor of Product]
llvm-project
------------------------------------------
[Affected Product Code Base]
https://github.com/llvm/llvm-project - commit id : a0dab4950
------------------------------------------
[Affected Component]
mlir::outlineSingleBlockRegion(mlir::RewriterBase&, mlir::Location, mlir::Region&, llvm::StringRef, mlir::func::CallOp*)
------------------------------------------
[Attack Type]
Local
------------------------------------------
[Impact Denial of Service]
true
------------------------------------------
[Attack Vectors]
mlir-opt --test-scf-if-utils temp.mlir
------------------------------------------
[Reference]
https://github.com/llvm/llvm-project/issues/60216
------------------------------------------
[Has vendor confirmed or acknowledged the vulnerability?]
true
------------------------------------------
[Discoverer]
Colloportus0