14 lines
970 B
JSON
14 lines
970 B
JSON
{
|
|
"id": "openEuler-SA-2023-1514",
|
|
"url": "https://www.openeuler.org/zh/security/security-bulletins/detail/?id=openEuler-SA-2023-1514",
|
|
"title": "An update for procps-ng is now available for openEuler-20.03-LTS-SP1,openEuler-20.03-LTS-SP3,openEuler-22.03-LTS,openEuler-22.03-LTS-SP1 and openEuler-22.03-LTS-SP2",
|
|
"severity": "Moderate",
|
|
"description": "The procps package contains a set of system utilities that provide system information. Procps includes ps, free, skill, pkill, pgrep, snice, tload, top, uptime, vmstat, pidof, pmap, slabtop, w, watch and pwdx.\r\n\r\nSecurity Fix(es):\r\n\r\nUnder some circumstances, this weakness allows a user who has access to run the “ps” utility on a machine, the ability to write almost unlimited amounts of unfiltered data into the process heap.(CVE-2023-4016)",
|
|
"cves": [
|
|
{
|
|
"id": "CVE-2023-4016",
|
|
"url": "https://nvd.nist.gov/vuln/detail/CVE-2023-4016",
|
|
"severity": "Moderate"
|
|
}
|
|
]
|
|
} |