Stack-Based Buffer Overflow in GNU Chess by The GNU Project
CVE-2019-15767
7.8HIGH
What is CVE-2019-15767?
In GNU Chess version 6.2.5, a severe stack-based buffer overflow vulnerability exists within the cmd_load function located in frontend/cmd.cc. This vulnerability can be exploited by providing a specially crafted chess position within an EPD file, potentially allowing attackers to execute arbitrary code or crash the application. Users and system administrators are advised to apply the recommended patches and updates to mitigate the risks associated with this security flaw.