Описание
ELSA-2023-4524: libcap security update (MODERATE)
[2.48-5]
- Fix integer overflow in _libcap_strdup() (CVE-2023-2603) Resolves: rhbz#2210637
- Correctly check pthread_create() return value to avoid memory leak (CVE-2023-2602) Resolves: rhbz#2210644
Обновленные пакеты
Oracle Linux 8
Oracle Linux aarch64
libcap
2.48-5.el8_8
libcap-devel
2.48-5.el8_8
Oracle Linux x86_64
libcap
2.48-5.el8_8
libcap-devel
2.48-5.el8_8
Связанные CVE
Связанные уязвимости
CVSS3: 3.3
ubuntu
около 2 лет назад
A vulnerability was found in the pthread_create() function in libcap. This issue may allow a malicious actor to use cause __real_pthread_create() to return an error, which can exhaust the process memory.
CVSS3: 3.3
redhat
около 2 лет назад
A vulnerability was found in the pthread_create() function in libcap. This issue may allow a malicious actor to use cause __real_pthread_create() to return an error, which can exhaust the process memory.