Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2011-4355

Опубликовано: 29 апр. 2011
Источник: redhat
CVSS2: 3.7
EPSS Низкий

Описание

GNU Project Debugger (GDB) before 7.5, when .debug_gdb_scripts is defined, automatically loads certain files from the current working directory, which allows local users to gain privileges via crafted files such as Python scripts.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 4gdbWill not fix
Red Hat Enterprise Linux 5gdbWill not fix
Red Hat Enterprise Linux 6gdbFixedRHSA-2013:052220.02.2013

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-20
https://bugzilla.redhat.com/show_bug.cgi?id=703238gdb: object file .debug_gdb_scripts section improper input validation

EPSS

Процентиль: 38%
0.00163
Низкий

3.7 Low

CVSS2

Связанные уязвимости

ubuntu
больше 12 лет назад

GNU Project Debugger (GDB) before 7.5, when .debug_gdb_scripts is defined, automatically loads certain files from the current working directory, which allows local users to gain privileges via crafted files such as Python scripts.

nvd
больше 12 лет назад

GNU Project Debugger (GDB) before 7.5, when .debug_gdb_scripts is defined, automatically loads certain files from the current working directory, which allows local users to gain privileges via crafted files such as Python scripts.

debian
больше 12 лет назад

GNU Project Debugger (GDB) before 7.5, when .debug_gdb_scripts is defi ...

github
больше 3 лет назад

GNU Project Debugger (GDB) before 7.5, when .debug_gdb_scripts is defined, automatically loads certain files from the current working directory, which allows local users to gain privileges via crafted files such as Python scripts.

oracle-oval
больше 12 лет назад

ELSA-2013-0522: gdb security and bug fix update (MODERATE)

EPSS

Процентиль: 38%
0.00163
Низкий

3.7 Low

CVSS2

Уязвимость CVE-2011-4355