VDB

GCVE-110-MAGEIA-2021-250

GCVE-110-MAGEIA-2021-250
Advisory Published
Vulnetix · Advisory published June 13, 2021
GNU Chess 6.2.7 allows attackers to execute arbitrary code via crafted PGN (Portable Game Notation) data. This is related to a buffer overflow in the use of a .tmp.epd temporary file in the cmd_pgnload and cmd_pgnreplay functions in frontend/cmd.cc. (CVE-2021-30184).

Affected Products

VendorProductVersionsPlatforms
Mageiagnuchess0 (affected), 6.2.7-1.1.mga8 (unaffected)
Mageiagnuchess0 (affected), 6.2.6-1.1.mga7 (unaffected)

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›