Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.852969
Category:SuSE Local Security Checks
Title:openSUSE: Security Advisory for gdb (openSUSE-SU-2019:2494-1)
Summary:The remote host is missing an update for the 'gdb'; package(s) announced via the openSUSE-SU-2019:2494-1 advisory.
Description:Summary:
The remote host is missing an update for the 'gdb'
package(s) announced via the openSUSE-SU-2019:2494-1 advisory.

Vulnerability Insight:
This update for gdb fixes the following issues:

Update to gdb 8.3.1: (jsc#ECO-368)

Security issues fixed:

- CVE-2019-1010180: Fixed a potential buffer overflow when loading ELF
sections larger than the file. (bsc#1142772)

Upgrade libipt from v2.0 to v2.0.1.

- Enable librpm for version > librpm.so.3 [bsc#1145692]:

* Allow any librpm.so.x

* Add %build test to check for 'zypper install ' message

- Copy gdbinit from fedora master @ 25caf28. Add gdbinit.without-python,
and use it for --without=python.

Rebase to 8.3 release (as in fedora 30 @ 1e222a3).

* DWARF index cache: GDB can now automatically save indices of DWARF
symbols on disk to speed up further loading of the same binaries.

* Ada task switching is now supported on aarch64-elf targets when
debugging a program using the Ravenscar Profile.

* Terminal styling is now available for the CLI and the TUI.

* Removed support for old demangling styles arm, edg, gnu, hp and lucid.

* Support for new native configuration RISC-V GNU/Linux (riscv*-*-linux*).

- Implemented access to more POWER8 registers. [fate#326120, fate#325178]

- Handle most of new s390 arch13 instructions. [fate#327369, jsc#ECO-368]

This update was imported from the SUSE:SLE-15-SP1:Update update project.

Patch Instructions:

To install this openSUSE Security Update use the SUSE recommended
installation methods
like YaST online_update or 'zypper patch'.

Alternatively you can run the command listed for your product:

- openSUSE Leap 15.1:

zypper in -t patch openSUSE-2019-2494=1

Affected Software/OS:
'gdb' package(s) on openSUSE Leap 15.1.

Solution:
Please install the updated package(s).

CVSS Score:
6.8

CVSS Vector:
AV:N/AC:M/Au:N/C:P/I:P/A:P

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2019-1010180
BugTraq ID: 109367
http://www.securityfocus.com/bid/109367
https://security.gentoo.org/glsa/202003-31
https://sourceware.org/bugzilla/show_bug.cgi?id=23657
SuSE Security Announcement: openSUSE-SU-2019:2415 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2019-10/msg00072.html
SuSE Security Announcement: openSUSE-SU-2019:2432 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2019-11/msg00008.html
SuSE Security Announcement: openSUSE-SU-2019:2493 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2019-11/msg00029.html
SuSE Security Announcement: openSUSE-SU-2019:2494 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2019-11/msg00028.html
CopyrightCopyright (C) 2020 Greenbone Networks GmbH

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.