Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Henry Ballentine

#32950of 53,779
7.8Total CVSS
Vulnerabilities · 1
PT-2019-14377
7.8
2019-08-29
Gnu · Gnu Chess · CVE-2019-15767
**Name of the Vulnerable Software and Affected Versions** GNU Chess version 6.2.5 **Description** A stack-based buffer overflow issue exists in the `cmd load` function, located in `frontend/cmd.cc`, which can be triggered by a crafted chess position in an EPD file. **Recommendations** For GNU Chess version 6.2.5, consider avoiding the use of crafted EPD files until a patch is available. As a temporary workaround, restrict the loading of chess positions from untrusted sources to minimize the risk of exploitation.