CVE-2023-39130 describes a heap buffer overflow vulnerability in GNU GDB version 13.0.50.20220805-git, specifically within the pe_as16() function in coff-pe-read.c. This vulnerability carries a CVSS score of 5.5 (Medium), indicating a local attack vector with low complexity, requiring user interaction, and primarily leading to high availability impact without affecting confidentiality or integrity. Currently, there is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
13.0.50.20220805-gitCPE matchmatch criteria | cpe:2.3:a:gnu:gdb:13.0.50.20220805-git:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
CVE-2023-39130
Nov 12, 2024gdb: heap-buffer-overflow in pe_as16(void*)
Jul 25, 2023GNU gdb (GDB) 13.0.50.20220805-git was discovered to contain a heap buffer overflow via the function pe_as16() at /gdb/coff-pe-read.c.
Jul 11, 2023