Wind River Support Network

HomeDefectsLIN1018-4936
Fixed

LIN1018-4936 : Security Advisory - gdb - CVE-2017-9778

Created: Sep 17, 2019    Updated: Nov 12, 2019
Resolved Date: Nov 12, 2019
Previous ID: LIN10-6447
Found In Version: 10.18.44.10
Fix Version: 10.18.44.12
Severity: Standard
Applicable for: Wind River Linux LTS 18
Component/s: Userspace

Description

GNU Debugger (GDB) 8.0 and earlier fails to detect a negative length field in a DWARF section. A malformed section in an ELF binary or a core file can cause GDB to repeatedly allocate memory until a process limit is reached. This can, for example, impede efforts to analyze malware with GDB.

https://nvd.nist.gov/vuln/detail/CVE-2017-9778

CVEs


Live chat
Online