CVE-2023-39130

CVSS 3.1 Score 5.5 of 10 (medium)

Details

Published Jul 25, 2023
Updated: Aug 3, 2023
CWE ID 787

Summary

CVE-2023-39130 is a newly discovered heap buffer overflow vulnerability affecting GNU gdb (GDB) version 13.0.50.20220805-git. The issue lies within the pe_as16() function located at /gdb/coff-pe-read.c. An attacker can exploit this vulnerability by providing specially crafted input to cause a buffer overflow, potentially leading to arbitrary code execution. This vulnerability poses a significant risk, as gdb is a widely used debugger, and exploitation could allow attackers to gain unauthorized access or manipulate software running on affected systems. Users are encouraged to update to the latest version of gdb to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share