Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2024-45769

Опубликовано: 17 сент. 2024
Источник: redhat
CVSS3: 5.5
EPSS Низкий

Описание

A vulnerability was found in Performance Co-Pilot (PCP).  This flaw allows an attacker to send specially crafted data to the system, which could cause the program to misbehave or crash.

Меры по смягчению последствий

Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10pcpNot affected
Red Hat Enterprise Linux 6pcpOut of support scope
Red Hat Enterprise Linux 7pcpOut of support scope
Red Hat Enterprise Linux 8pcpFixedRHSA-2024:683719.09.2024
Red Hat Enterprise Linux 8.2 Advanced Update SupportpcpFixedRHSA-2024:684019.09.2024
Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update SupportpcpFixedRHSA-2024:684219.09.2024
Red Hat Enterprise Linux 8.4 Telecommunications Update ServicepcpFixedRHSA-2024:684219.09.2024
Red Hat Enterprise Linux 8.4 Update Services for SAP SolutionspcpFixedRHSA-2024:684219.09.2024
Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update SupportpcpFixedRHSA-2024:684319.09.2024
Red Hat Enterprise Linux 8.6 Telecommunications Update ServicepcpFixedRHSA-2024:684319.09.2024

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-787
https://bugzilla.redhat.com/show_bug.cgi?id=2310452pcp: pmcd heap corruption through metric pmstore operations

EPSS

Процентиль: 20%
0.00063
Низкий

5.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.5
ubuntu
11 месяцев назад

A vulnerability was found in Performance Co-Pilot (PCP).  This flaw allows an attacker to send specially crafted data to the system, which could cause the program to misbehave or crash.

CVSS3: 5.5
nvd
11 месяцев назад

A vulnerability was found in Performance Co-Pilot (PCP).  This flaw allows an attacker to send specially crafted data to the system, which could cause the program to misbehave or crash.

CVSS3: 5.5
msrc
3 месяца назад

Описание отсутствует

CVSS3: 5.5
debian
11 месяцев назад

A vulnerability was found in Performance Co-Pilot (PCP). This flaw all ...

CVSS3: 5.5
github
11 месяцев назад

A vulnerability was found in Performance Co-Pilot (PCP).  This flaw allows an attacker to send specially crafted data to the system, which could cause the program to misbehave or crash.

EPSS

Процентиль: 20%
0.00063
Низкий

5.5 Medium

CVSS3