Wind River Support Network

HomeDefectsLIN10-794
Fixed

LIN10-794 : Security Advisory - gdb - CVE-2017-9778

Created: Jun 28, 2017    Updated: Apr 10, 2020
Resolved Date: Mar 13, 2020
Found In Version: 10.17.41.1
Fix Version: 10.17.41.20
Severity: Standard
Applicable for: Wind River Linux LTS 17
Component/s: Userspace

Description

GNU Debugger (GDB) 8.0 and earlier fails to detect a negative length field in a DWARF section. A malformed section in an ELF binary or a core file can cause GDB to repeatedly allocate memory until a process limit is reached. This can, for example, impede efforts to analyze malware with GDB.

https://nvd.nist.gov/vuln/detail/CVE-2017-9778

CVEs


Live chat
Online