GDB 的 STABS 调试格式解析器中存在一个缺陷。 位于 中的 函数在处理 C++ 类的析构函数与非析构函数成员函数的分离逻辑时,存在一个链表移除错误。该错误导致析构函数条目仍然保留在主函数列表中,同时链表长度计数器却被递减。当函数列表被复制到最终分配的数组时,会引发越界写入。 攻击者可以构造一个包含恶意 和 段的 ELF 二进制文件。当用户在 GDB 中打开该文件并执行任意符号检查操作(例如设置断点)时,即可触发此越界写入。此时目标进程(inferior process)无需实际运行。在受控条件下,已证明该漏
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Red Hat | Red Hat Enterprise Linux 10 | any |
affected |
| Red Hat | Red Hat Enterprise Linux 6 | any |
affected |
| Red Hat | Red Hat Enterprise Linux 7 | any |
affected |
| Red Hat | Red Hat Enterprise Linux 8 | any |
affected |
| Red Hat | Red Hat Enterprise Linux 9 | any |
affected |
| Red Hat | Red Hat Hardened Images | any |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Red Hat | Red Hat Enterprise Linux 10 | - |
cpe:/o:redhat:enterprise_linux:10
|
|
| Red Hat | Red Hat Enterprise Linux 6 | - |
cpe:/o:redhat:enterprise_linux:6
|
|
| Red Hat | Red Hat Enterprise Linux 7 | - |
cpe:/o:redhat:enterprise_linux:7
|
|
| Red Hat | Red Hat Enterprise Linux 8 | - |
cpe:/o:redhat:enterprise_linux:8
|
|
| Red Hat | Red Hat Enterprise Linux 9 | - |
cpe:/o:redhat:enterprise_linux:9
|
|
| Red Hat | Red Hat Hardened Images | - |
cpe:/a:redhat:hummingbird:1
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-83596 | 8.8 HIGH | Webkitgtk: validate the full featurelist array once in opentypeverticaldata findfeature |
| CVE-2026-12894 | 8.8 HIGH | Quarkus-qute: io.quarkus.qute.reflectionvalueresolver: quarkus:server-side template inject |
| CVE-2026-17615 | 7.5 HIGH | Resteasy-core: resteasy sourceprovider remote unauthenticated file read |
| CVE-2026-76763 | 7.5 HIGH | Io.smallrye/smallrye-graphql: smallrye graphql: unauthenticated denial of service via larg |
| CVE-2026-81624 | 7.5 HIGH | Undertow-core: undertow: websocketcontainer defaults for buffers and timeouts are infinite |
No comments yet