Wind River Support Network

HomeDefectsLIN9-4566
Fixed

LIN9-4566 : Security Advisory - gdb - CVE-2017-9778

Created: Jun 29, 2017    Updated: Nov 7, 2019
Resolved Date: Nov 7, 2019
Found In Version: 9.0.0.7
Fix Version: 9.0.0.24
Severity: Standard
Applicable for: Wind River Linux 9
Component/s: Userspace

Description

GNU Debugger (GDB) 8.0 and earlier fails to detect a negative length field in a DWARF section. A malformed section in an ELF binary or a core file can cause GDB to repeatedly allocate memory until a process limit is reached. This can, for example, impede efforts to analyze malware with GDB.

https://nvd.nist.gov/vuln/detail/CVE-2017-9778

CVEs


Live chat
Online