CVE-2016-9427: Bdwgc Project Bdwgc
Critical severity, CVSS 9.8. EPSS: 4.1% chance of exploitation in the next 30 days.
Integer overflow vulnerability in bdwgc before 2016-09-27 allows attackers to cause client of bdwgc denial of service (heap buffer overflow crash) and possibly execute arbitrary code via huge allocation.
Affected products
- Bdwgc Project Bdwgc: up to and including 7.4.4
- Debian Debian Linux: version 9.0 only
- Opensuse Leap: version 42.1 only; version 42.2 only
- Opensuse Opensuse: version 13.2 only
Published 2016-12-12. Last modified 2026-06-17.