cbcvebase.
CVE-2006-4146
published 2006-08-31

CVE-2006-4146: Buffer overflow in the (1) DWARF (dwarfread.c) and (2) DWARF2 (dwarf2read.c) debugging code in GNU Debugger (GDB) 6.5 allows user-assisted attackers, or…

PriorityP423medium5.1CVSS 2.0
AVNACHAuNCPIPAP
EPSS
3.23%
86.8th percentile
Buffer overflow in the (1) DWARF (dwarfread.c) and (2) DWARF2 (dwarf2read.c) debugging code in GNU Debugger (GDB) 6.5 allows user-assisted attackers, or restricted users, to execute arbitrary code via a crafted file with a location block (DW_FORM_block) that contains a large number of operations.

Affected

6 ranges
VendorProductVersion rangeFixed in
debiangdb< gdb 7.3-1 (bookworm)gdb 7.3-1 (bookworm)
gnugdb
gnugdb>= 0 < 7.3-17.3-1
gnugdb>= 0 < 7.3-17.3-1
gnugdb>= 0 < 7.3-17.3-1
gnugdb>= 0 < 7.3-17.3-1

CVSS provenance

nvdv2.05.1MEDIUMAV:N/AC:H/Au:N/C:P/I:P/A:P
osv5.1MEDIUM
vendor_debian5.1LOW
vendor_redhat5.1MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.