Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2019-3352

Опубликовано: 14 нояб. 2019
Источник: oracle-oval
Платформа: Oracle Linux 8

Описание

ELSA-2019-3352: gdb security, bug fix, and enhancement update (LOW)

[8.2-6.el8]

  • Fix yum vs dnf messaging for RHEL8 (RH BZ 1666249): Add gdb-rhbz1666249-suggest-yum-instead-of-dnf.pattch Do not define DNF_DEBUGINFO_INSTALL for RHEL.
  • Backport 'Remove support for old mangling schemes' (Simon Marchi, RH BZ 1668635)
  • Backport 'Add checks for the NT_ARM_SVE section in a core file.' (Alan Hayward, RH BZ 1669953)
  • Backport more Power8 support (IBM, RH BZ 1187581)

Обновленные пакеты

Oracle Linux 8

Oracle Linux aarch64

gdb

8.2-6.el8

gdb-doc

8.2-6.el8

gdb-gdbserver

8.2-6.el8

gdb-headless

8.2-6.el8

Oracle Linux x86_64

gdb

8.2-6.el8

gdb-doc

8.2-6.el8

gdb-gdbserver

8.2-6.el8

gdb-headless

8.2-6.el8

Связанные CVE

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 7 лет назад

The demangle_template function in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.31.1, has a memory leak via a crafted string, leading to a denial of service (memory consumption), as demonstrated by cxxfilt, a related issue to CVE-2018-12698.

CVSS3: 3.3
redhat
около 7 лет назад

The demangle_template function in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.31.1, has a memory leak via a crafted string, leading to a denial of service (memory consumption), as demonstrated by cxxfilt, a related issue to CVE-2018-12698.

CVSS3: 7.5
nvd
около 7 лет назад

The demangle_template function in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.31.1, has a memory leak via a crafted string, leading to a denial of service (memory consumption), as demonstrated by cxxfilt, a related issue to CVE-2018-12698.

CVSS3: 7.5
debian
около 7 лет назад

The demangle_template function in cplus-dem.c in GNU libiberty, as dis ...

CVSS3: 7.5
github
больше 3 лет назад

The demangle_template function in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.31.1, has a memory leak via a crafted string, leading to a denial of service (memory consumption), as demonstrated by cxxfilt, a related issue to CVE-2018-12698.