DEBIAN-CVE-2026-13732

Source
https://security-tracker.debian.org/tracker/CVE-2026-13732
Import Source
https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2026-13732.json
JSON Data
https://api.osv.dev/v1/vulns/DEBIAN-CVE-2026-13732
Upstream
  • CVE-2026-13732
Published
2026-08-31T20:17:02Z
Modified
2026-09-14T17:01:59Z
Severity
  • 7.0 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H CVSS Calculator
Summary
[none]
Details

A flaw was found in GDB's STABS debug format parser. The read_member_functions() function in gdb/stabsread.c contains a linked list removal bug in the code that separates destructor and non-destructor member functions of C++ classes. The bug causes the destructor entries to remain in the main function list while the list length counter is decremented, resulting in an out-of-bounds write when the function list is copied to its final allocated array. An attacker can craft an ELF binary with malicious .stab and .stabstr sections that triggers this out-of-bounds write when a user opens the file in GDB and performs any symbol-inspection operation such as setting a breakpoint. The inferior process does not need to be executed. Under controlled conditions, this was demonstrated to achieve execution of arbitrary commands within the GDB process.

References

Affected packages

Debian:12 / gdb

Package

Name
gdb
Purl
pkg:deb/debian/gdb?arch=source&distro=bookworm

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected

Affected versions

13.*
13.1-3
13.2-1
13.2-1+hurd.3
15.*
15.1-1
15.2-1
15.2-2~exp1
16.*
16.0.90.20250111-1~exp1
16.0.90.20250111-1~exp2
16.1-1
16.1-2
16.1-2+hurd.1
16.2-1
16.2-2
16.2-3
16.2-4
16.2-5
16.2-6
16.2-7
16.2-8
16.3-1
16.3-2
16.3-3
16.3-4~bpo13+1
16.3-4~bpo13+2
16.3-4
16.3-5~bpo13+1
16.3-5
17.*
17.0.50.20250905-1~exp1
17.0.90-1~exp1
17.0.90-1~exp2
17.1-1~bpo13+1
17.1-1
17.1-2
17.1-3
17.1-4
17.2-1~bpo13+1
17.2-1

Ecosystem specific

{
    "urgency": "unimportant"
}

Database specific

source
"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2026-13732.json"

Debian:13 / gdb

Package

Name
gdb
Purl
pkg:deb/debian/gdb?arch=source&distro=trixie

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected

Affected versions

16.*
16.3-1
16.3-2
16.3-3
16.3-4~bpo13+1
16.3-4~bpo13+2
16.3-4
16.3-5~bpo13+1
16.3-5
17.*
17.0.50.20250905-1~exp1
17.0.90-1~exp1
17.0.90-1~exp2
17.1-1~bpo13+1
17.1-1
17.1-2
17.1-3
17.1-4
17.2-1~bpo13+1
17.2-1

Ecosystem specific

{
    "urgency": "unimportant"
}

Database specific

source
"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2026-13732.json"

Debian:14 / gdb

Package

Name
gdb
Purl
pkg:deb/debian/gdb?arch=source&distro=forky

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected

Affected versions

16.*
16.3-1
16.3-2
16.3-3
16.3-4~bpo13+1
16.3-4~bpo13+2
16.3-4
16.3-5~bpo13+1
16.3-5
17.*
17.0.50.20250905-1~exp1
17.0.90-1~exp1
17.0.90-1~exp2
17.1-1~bpo13+1
17.1-1
17.1-2
17.1-3
17.1-4
17.2-1~bpo13+1
17.2-1

Ecosystem specific

{
    "urgency": "unimportant"
}

Database specific

source
"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2026-13732.json"