CVE-2023-39128 describes a stack overflow vulnerability in GNU GDB version 13.0.50.20220805-git, specifically within the ada_decode function. This medium-severity vulnerability (CVSS 5.5) can lead to a denial of service (availability impact) if a user is tricked into opening a specially crafted file, requiring user interaction for exploitation. Currently, there is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
13.0.50.20220805-gitCPE matchmatch criteria | cpe:2.3:a:gnu:gdb:13.0.50.20220805-git:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
CVE-2023-39128
Nov 12, 2024gdb: dynamic-stack-buffer-overflow in ada_decode[abi:cxx11](char const*, bool, bool)
Jul 25, 2023GNU gdb (GDB) 13.0.50.20220805-git was discovered to contain a stack overflow via the function ada_decode at /gdb/ada-lang.c.
Jul 11, 2023