In GNU Chess 6.2.5, there is a stack-based buffer overflow in the cmd_load function in frontend/cmd.cc via a crafted chess position in an EPD file.
{ "priority_reason": "This is neutralized via building with hardening flags. No real impact.", "ubuntu_priority": "negligible", "binaries": [ { "binary_name": "gnuchess", "binary_version": "6.2.7-1" }, { "binary_name": "gnuchess-dbgsym", "binary_version": "6.2.7-1" } ], "availability": "No subscription required" }
{ "priority_reason": "This is neutralized via building with hardening flags. No real impact.", "ubuntu_priority": "negligible", "binaries": [ { "binary_name": "gnuchess", "binary_version": "6.2.7-1" }, { "binary_name": "gnuchess-dbgsym", "binary_version": "6.2.7-1" } ], "availability": "No subscription required" }