Your submission was sent successfully! Close

You have successfully unsubscribed! Close

Thank you for signing up for our newsletter!
In these regular emails you will find the latest updates about Ubuntu and upcoming events where you can meet our team.Close

Search CVE reports


Toggle filters

1 – 7 of 7 results


CVE-2023-4016

Low priority

Some fixes available 6 of 7

Under some circumstances, this weakness allows a user who has access to run the “ps” utility on a machine, the ability to write almost unlimited amounts of unfiltered data into the process heap.

1 affected packages

procps

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
procps Not affected Fixed Fixed Fixed Fixed
Show less packages

CVE-2018-1126

Medium priority
Fixed

procps-ng before version 3.3.15 is vulnerable to an incorrect integer size in proc/alloc.* leading to truncation/integer overflow issues. This flaw is related to CVE-2018-1124.

1 affected packages

procps

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
procps Fixed Fixed
Show less packages

CVE-2018-1125

Medium priority
Fixed

procps-ng before version 3.3.15 is vulnerable to a stack buffer overflow in pgrep. This vulnerability is mitigated by FORTIFY, as it involves strncat() to a stack-allocated string. When pgrep is compiled with FORTIFY (as on...

1 affected packages

procps

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
procps Fixed Fixed
Show less packages

CVE-2018-1124

Medium priority
Fixed

procps-ng before version 3.3.15 is vulnerable to multiple integer overflows leading to a heap corruption in file2strvec function. This allows a privilege escalation for a local attacker who can create entries in procfs by starting...

1 affected packages

procps

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
procps Fixed Fixed
Show less packages

CVE-2018-1123

Medium priority
Fixed

procps-ng before version 3.3.15 is vulnerable to a denial of service in ps via mmap buffer overflow. Inbuilt protection in ps maps a guard page at the end of the overflowed buffer, ensuring that the impact of this flaw is limited...

1 affected packages

procps

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
procps Fixed Fixed
Show less packages

CVE-2018-1122

Medium priority
Fixed

procps-ng before version 3.3.15 is vulnerable to a local privilege escalation in top. If a user runs top with HOME unset in an attacker-controlled directory, the attacker could achieve privilege escalation by exploiting one of...

1 affected packages

procps

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
procps Fixed Fixed
Show less packages

CVE-2018-1120

Medium priority

Some fixes available 21 of 32

A flaw was found affecting the Linux kernel before version 4.17. By mmap()ing a FUSE-backed file onto a process's memory containing command line arguments (or environment strings), an attacker can cause utilities from psutils or...

28 affected packages

linux, linux-aws, linux-aws-hwe, linux-azure, linux-azure-edge...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
linux Fixed Fixed
linux-aws Fixed Fixed
linux-aws-hwe Not in release Not affected
linux-azure Fixed Fixed
linux-azure-edge Fixed Fixed
linux-euclid Not in release Ignored
linux-flo Not in release Ignored
linux-gcp Fixed Fixed
linux-gcp-edge Not affected Not in release
linux-gke Not affected Ignored
linux-goldfish Not in release Ignored
linux-grouper Not in release Not in release
linux-hwe Not affected Fixed
linux-hwe-edge Not affected Fixed
linux-kvm Fixed Fixed
linux-lts-trusty Not in release Not in release
linux-lts-utopic Not in release Not in release
linux-lts-vivid Not in release Not in release
linux-lts-wily Not in release Not in release
linux-lts-xenial Not in release Not in release
linux-maguro Not in release Not in release
linux-mako Not in release Ignored
linux-manta Not in release Not in release
linux-oem Fixed Ignored
linux-oracle Not affected Not affected
linux-raspi2 Fixed Fixed
linux-snapdragon Fixed Fixed
procps Not affected Not affected
Show all 28 packages Show less packages