Heap-based buffer overflow in The GNU Project Debugger (GDB) - CVE-2023-39130
Published: January 29, 2024
The GNU Project Debugger (GDB)
GNU
Description
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to a boundary error within the pe_as16() function in /gdb/coff-pe-read.c. A remote attacker can trick the victim to run the debugger on a specially crafted file, trigger a heap-based buffer overflow and perform a denial of service (DoS) attack.