Wind River Support Network

HomeDefectsLIN8-7017
Fixed

LIN8-7017 : Security Advisory - gdb - CVE-2017-9778

Created: Jun 29, 2017    Updated: Nov 7, 2019
Resolved Date: Nov 7, 2019
Found In Version: 8.0.0.18
Fix Version: 8.0.0.31
Severity: Standard
Applicable for: Wind River Linux 8
Component/s: Userspace

Description

GNU Debugger (GDB) 8.0 and earlier fails to detect a negative length field in a DWARF section. A malformed section in an ELF binary or a core file can cause GDB to repeatedly allocate memory until a process limit is reached. This can, for example, impede efforts to analyze malware with GDB.

https://nvd.nist.gov/vuln/detail/CVE-2017-9778

CVEs


Live chat
Online