Vulnerability Scanning Solutions, LLC.
Home
Our Process
Residential
Corporate
What We Scan For
Sample Report
Client List
Terms
Contact Us
What We Scan For
Family: Gentoo Local Security Checks --> Category: infos

[GLSA-200505-15] gdb: Multiple vulnerabilities Vulnerability Scan


Vulnerability Scan Summary
gdb: Multiple vulnerabilities

Detailed Explanation for this Vulnerability Test
The remote host is affected by the vulnerability described in GLSA-200505-15
(gdb: Multiple vulnerabilities)


Tavis Ormandy of the Gentoo Linux Security Audit Team discovered
an integer overflow in the BFD library, resulting in a heap overflow. A
review also showed that by default, gdb insecurely sources
initialisation files from the working directory.

Impact

Successful exploitation would result in the execution of arbitrary
code on loading a specially crafted object file or the execution of
arbitrary commands.

Workaround

There is no known workaround at this time.


Solution:
All gdb users should upgrade to the latest stable version:
# emerge --sync
# emerge --ask --oneshot --verbose ">=sys-devel/gdb-6.3-r3"


Threat Level: Medium


Click HERE for more information and discussions on this network vulnerability scan.

VSS, LLC.

P.O. Box 827051

Pembroke Pines, FL 33082-7051

Vulnerability Scanning Solutions, LLC.