CVE Vulnerabilities

CVE-2011-4355

Published: Mar 05, 2013 | Modified: Feb 13, 2023
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.9 MEDIUM
AV:L/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
3.7 MODERATE
AV:L/AC:H/Au:N/C:P/I:P/A:P
RedHat/V3
Ubuntu
LOW

GNU Project Debugger (GDB) before 7.5, when .debug_gdb_scripts is defined, automatically loads certain files from the current working directory, which allows local users to gain privileges via crafted files such as Python scripts.

Affected Software

Name Vendor Start Version End Version
Gdb Gnu * 7.4.1 (including)
Gdb Gnu 4.18 (including) 4.18 (including)
Gdb Gnu 5.0 (including) 5.0 (including)
Gdb Gnu 5.0.92 (including) 5.0.92 (including)
Gdb Gnu 5.0.93 (including) 5.0.93 (including)
Gdb Gnu 5.1 (including) 5.1 (including)
Gdb Gnu 5.1.1 (including) 5.1.1 (including)
Gdb Gnu 5.2 (including) 5.2 (including)
Gdb Gnu 5.2.1 (including) 5.2.1 (including)
Gdb Gnu 5.3 (including) 5.3 (including)
Gdb Gnu 6.0 (including) 6.0 (including)
Gdb Gnu 6.1 (including) 6.1 (including)
Gdb Gnu 6.1.1 (including) 6.1.1 (including)
Gdb Gnu 6.2 (including) 6.2 (including)
Gdb Gnu 6.2.1 (including) 6.2.1 (including)
Gdb Gnu 6.3 (including) 6.3 (including)
Gdb Gnu 6.4 (including) 6.4 (including)
Gdb Gnu 6.5 (including) 6.5 (including)
Gdb Gnu 6.6 (including) 6.6 (including)
Gdb Gnu 6.7 (including) 6.7 (including)
Gdb Gnu 6.7.1 (including) 6.7.1 (including)
Gdb Gnu 6.8 (including) 6.8 (including)
Gdb Gnu 7.0 (including) 7.0 (including)
Gdb Gnu 7.0.1 (including) 7.0.1 (including)
Gdb Gnu 7.1 (including) 7.1 (including)
Gdb Gnu 7.2 (including) 7.2 (including)
Gdb Gnu 7.3 (including) 7.3 (including)
Gdb Gnu 7.3.1 (including) 7.3.1 (including)
Gdb Gnu 7.4 (including) 7.4 (including)
Red Hat Enterprise Linux 6 RedHat gdb-0:7.2-60.el6 *
Gdb Ubuntu hardy *
Gdb Ubuntu lucid *
Gdb Ubuntu maverick *
Gdb Ubuntu natty *
Gdb Ubuntu oneiric *
Gdb Ubuntu precise *
Gdb Ubuntu quantal *
Gdb Ubuntu raring *
Gdb Ubuntu saucy *
Gdb Ubuntu upstream *

References