Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2023-6705

Опубликовано: 11 нояб. 2023
Источник: oracle-oval
Платформа: Oracle Linux 9

Описание

ELSA-2023-6705: procps-ng security and bug fix update (LOW)

[3.3.17-13.0.1]

  • ps: remove uptime integer conversion [Orabug: 35909347]
  • ps: improved three elapsed 'jiffies/tics' calculations [Orabug: 35909347]

[3.3.17-13]

  • ps: mitigation of possible buffer overflow
  • Resolves: rhbz#2228504

[3.3.17-12]

  • sysctl: '-N' option shows values instead of names if '-p'
  • Resolves: rhbz#2222056

Обновленные пакеты

Oracle Linux 9

Oracle Linux aarch64

procps-ng

3.3.17-13.0.1.el9

procps-ng-devel

3.3.17-13.0.1.el9

procps-ng-i18n

3.3.17-13.0.1.el9

Oracle Linux x86_64

procps-ng

3.3.17-13.0.1.el9

procps-ng-devel

3.3.17-13.0.1.el9

procps-ng-i18n

3.3.17-13.0.1.el9

Связанные CVE

Связанные уязвимости

CVSS3: 2.5
ubuntu
почти 2 года назад

Under some circumstances, this weakness allows a user who has access to run the “ps” utility on a machine, the ability to write almost unlimited amounts of unfiltered data into the process heap.

CVSS3: 3.3
redhat
почти 2 года назад

Under some circumstances, this weakness allows a user who has access to run the “ps” utility on a machine, the ability to write almost unlimited amounts of unfiltered data into the process heap.

CVSS3: 2.5
nvd
почти 2 года назад

Under some circumstances, this weakness allows a user who has access to run the “ps” utility on a machine, the ability to write almost unlimited amounts of unfiltered data into the process heap.

CVSS3: 2.5
debian
почти 2 года назад

Under some circumstances, this weakness allows a user who has access t ...

suse-cvrf
4 месяца назад

Security update for procps