Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2024:6848

Опубликовано: 30 сент. 2024
Источник: rocky
Оценка: Important

Описание

Important: pcp security update

Performance Co-Pilot (PCP) is a suite of tools, services, and libraries for acquisition, archiving, and analysis of system-level performance measurements. Its light-weight distributed architecture makes it particularly well-suited to centralized analysis of complex systems.

Security Fix(es):

  • pcp: pmpost symlink attack allows escalating pcp to root user (CVE-2024-45770)

  • pcp: pmcd heap corruption through metric pmstore operations (CVE-2024-45769)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Затронутые продукты

  • Rocky Linux 9

НаименованиеАрхитектураРелизRPM
pcpx86_645.el9_4pcp-6.2.0-5.el9_4.x86_64.rpm
pcp-confx86_645.el9_4pcp-conf-6.2.0-5.el9_4.x86_64.rpm
pcp-develx86_645.el9_4pcp-devel-6.2.0-5.el9_4.x86_64.rpm
pcp-docnoarch5.el9_4pcp-doc-6.2.0-5.el9_4.noarch.rpm
pcp-export-pcp2elasticsearchx86_645.el9_4pcp-export-pcp2elasticsearch-6.2.0-5.el9_4.x86_64.rpm
pcp-export-pcp2graphitex86_645.el9_4pcp-export-pcp2graphite-6.2.0-5.el9_4.x86_64.rpm
pcp-export-pcp2influxdbx86_645.el9_4pcp-export-pcp2influxdb-6.2.0-5.el9_4.x86_64.rpm
pcp-export-pcp2jsonx86_645.el9_4pcp-export-pcp2json-6.2.0-5.el9_4.x86_64.rpm
pcp-export-pcp2sparkx86_645.el9_4pcp-export-pcp2spark-6.2.0-5.el9_4.x86_64.rpm
pcp-export-pcp2xmlx86_645.el9_4pcp-export-pcp2xml-6.2.0-5.el9_4.x86_64.rpm

Показывать по

Связанные CVE

Связанные уязвимости

rocky
9 месяцев назад

Important: pcp security update

oracle-oval
7 месяцев назад

ELSA-2024-9452: pcp security update (MODERATE)

oracle-oval
9 месяцев назад

ELSA-2024-6848: pcp security update (IMPORTANT)

oracle-oval
9 месяцев назад

ELSA-2024-6837: pcp security update (IMPORTANT)

suse-cvrf
8 месяцев назад

Security update for pcp