CVE-2020-24119: Fedoraproject Fedora

High severity, CVSS 7.1. EPSS: 1.1% chance of exploitation in the next 30 days.

A heap buffer overflow read was discovered in upx 4.0.0, because the check in p_lx_elf.cpp is not perfect.

Affected products

  • Fedoraproject Fedora: version 33 only; version 34 only
  • Upx Upx: version 4.0.0 only

Published 2021-05-14. Last modified 2026-06-17.