Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2023:7187

Опубликовано: 28 нояб. 2023
Источник: rocky
Оценка: Low

Описание

Low: procps-ng security update

The procps-ng packages contain a set of system utilities that provide system information, including ps, free, skill, pkill, pgrep, snice, tload, top, uptime, vmstat, w, watch, and pwdx.

Security Fix(es):

  • procps: ps buffer overflow (CVE-2023-4016)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Additional Changes:

For detailed information on changes in this release, see the Rocky Linux 8.9 Release Notes linked from the References section.

Затронутые продукты

  • Rocky Linux 8

НаименованиеАрхитектураРелизRPM
procps-ngx86_6414.el8procps-ng-3.3.15-14.el8.x86_64.rpm
procps-ng-i18nnoarch14.el8procps-ng-i18n-3.3.15-14.el8.noarch.rpm

Показывать по

Связанные CVE

Исправления

Связанные уязвимости

CVSS3: 2.5
ubuntu
почти 2 года назад

Under some circumstances, this weakness allows a user who has access to run the “ps” utility on a machine, the ability to write almost unlimited amounts of unfiltered data into the process heap.

CVSS3: 3.3
redhat
почти 2 года назад

Under some circumstances, this weakness allows a user who has access to run the “ps” utility on a machine, the ability to write almost unlimited amounts of unfiltered data into the process heap.

CVSS3: 2.5
nvd
почти 2 года назад

Under some circumstances, this weakness allows a user who has access to run the “ps” utility on a machine, the ability to write almost unlimited amounts of unfiltered data into the process heap.

CVSS3: 2.5
debian
почти 2 года назад

Under some circumstances, this weakness allows a user who has access t ...

suse-cvrf
4 месяца назад

Security update for procps