CVE-2020-24119: Fedoraproject Fedora
High severity, CVSS 7.1. EPSS: 1.1% chance of exploitation in the next 30 days.
A heap buffer overflow read was discovered in upx 4.0.0, because the check in p_lx_elf.cpp is not perfect.
Affected products
- Fedoraproject Fedora: version 33 only; version 34 only
- Upx Upx: version 4.0.0 only
Published 2021-05-14. Last modified 2026-06-17.