Details at $URL. @maintainer(s): since the fixed package is already in the tree, please let us know if it is ready for the stabilization or not.
CVE ID: CVE-2016-10254 Summary: The allocate_elf function in common.h in elfutils before 0.168 allows remote attackers to cause a denial of service (crash) via a crafted ELF file, which triggers a memory allocation failure. Published: 2017-03-23T16:59:00.000Z
Ping on stabilization. .. are we ready to go stable?
The tree only contains >=dev-libs/elfutils-0.169-r1 anymore.
This issue was resolved and addressed in GLSA 201710-10 at https://security.gentoo.org/glsa/201710-10 by GLSA coordinator Aaron Bauman (b-man).