CVE-2019-1010180

Severity
7.8HIGH
EPSS
0.3%
top 47.33%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJul 24
Latest updateMay 24

Description

GNU gdb All versions is affected by: Buffer Overflow - Out of bound memory access. The impact is: Deny of Service, Memory Disclosure, and Possible Code Execution. The component is: The main gdb module. The attack vector is: Open an ELF for debugging. The fixed version is: Not fixed yet.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages4 packages

NVDopensuse/leap15.0, 15.1+1
NVDgnu/gdb< 9.1
Debianbinutils< 2.32.51.20190707-1+3
CVEListV5gnu/gdbAll versions (At least as of date 2018-09-16)

Patches

🔴Vulnerability Details

3
GHSA
GHSA-rcgh-h6mp-4g9q: GNU gdb All versions is affected by: Buffer Overflow - Out of bound memory access2022-05-24
OSV
CVE-2019-1010180: GNU gdb All versions is affected by: Buffer Overflow - Out of bound memory access2019-07-24
CVEList
CVE-2019-1010180: GNU gdb All versions is affected by: Buffer Overflow - Out of bound memory access2019-07-24

📋Vendor Advisories

3
Red Hat
gdb: buffer overflow while opening an ELF for debugging leads to Dos, information dislosure and code execution2019-08-13
Microsoft
GNU gdb All versions is affected by: Buffer Overflow - Out of bound memory access. The impact is: Deny of Service, Memory Disclosure, and Possible Code Execution. The component is: The main gdb module2019-07-09
Debian
CVE-2019-1010180: binutils - GNU gdb All versions is affected by: Buffer Overflow - Out of bound memory acces...2019

💬Community

2
Bugzilla
CVE-2019-1010180 gdb: buffer overflow while opening an ELF for debugging leads to Dos, information dislosure and code execution2019-08-13
Bugzilla
CVE-2019-1010180 gdb: buffer overflow while opening an ELF for debugging leads to Dos, information dislosure and code execution [fedora-all]2019-08-13
CVE-2019-1010180 (HIGH CVSS 7.8) | GNU gdb All versions is affected by | cvebase.io