UbuntuUpdates.org

Package "procps"

Name: procps

Description:

/proc file system utilities

Latest version: 2:3.3.16-1ubuntu2.4
Release: focal (20.04)
Level: security
Repository: main
Homepage: https://gitlab.com/procps-ng/procps

Links


Download "procps"


Other versions of "procps" in Focal

Repository Area Version
base main 2:3.3.16-1ubuntu2
updates main 2:3.3.16-1ubuntu2.4

Packages in group

Deleted packages are displayed in grey.


Changelog

Version: 2:3.3.16-1ubuntu2.4 2023-11-14 10:10:45 UTC

  procps (2:3.3.16-1ubuntu2.4) focal-security; urgency=medium

  * SECURITY UPDATE: heap-based buffer overflow
    - debian/patches/CVE-2023-4016: replace the use of malloc() with calloc()
      in ps/parser.c to prevent the potential for an arithmetic overflow when
      allocating memory.
    - CVE-2023-4016

 -- Ian Constantin <email address hidden> Tue, 31 Oct 2023 13:35:56 +0200

CVE-2023-4016 Under some circumstances, this weakness allows a user who has access to run the “ps” utility on a machine, the ability to write almost unlimited amou



About   -   Send Feedback to @ubuntu_updates