ubuntu · CVE-2017-9778

Quick triage

Priority: low Published: 2017-06-21 07:29:00 UTC Updated: 2025-08-26 12:02:23 UTC

View at Official ubuntu advisory, NVD, CVE.org · CVE detail

Freshness: upstream tracker timestamp is available; use API updated time as primary recency signal.

Tracker summary

CVE-2017-9778 low priority: Ubuntu including 1 source packages (gdb), 22 status rows across 22 suites (artful, bionic, cosmic, disco, eoan, focal, groovy, hirsute, impish, jammy, kinetic, lunar, mantic, noble, oracular, plucky, questing, trusty, upstream, xenial, yakkety, zesty): ignored 10, not-affected 8, needed 2, DNE 1, released 1.

Description:

GNU Debugger (GDB) 8.0 and earlier fails to detect a negative length field in a DWARF section. A malformed section in an ELF binary or a core file can cause GDB to repeatedly allocate memory until a process limit is reached. This can, for example, impede efforts to analyze malware with GDB.

cvelogic Threat Intelligence