[ubuntu/mantic-security] procps 2:4.0.3-1ubuntu1.23.10.1 (Accepted)

Ian Constantin ian.constantin at canonical.com
Tue Nov 14 08:33:11 UTC 2023


procps (2:4.0.3-1ubuntu1.23.10.1) mantic-security; urgency=medium

  * SECURITY UPDATE: heap-based buffer overflow
    - debian/patches/CVE-2023-4016.patch: replace the use of malloc() with calloc()
      in ps/parser.c to prevent the potential for an arithmetic overflow when
      allocating memory.
    - CVE-2023-4016

Date: 2023-11-06 14:58:14.462413+00:00
Changed-By: Ian Constantin <ian.constantin at canonical.com>
https://launchpad.net/ubuntu/+source/procps/2:4.0.3-1ubuntu1.23.10.1
-------------- next part --------------
Sorry, changesfile not available.


More information about the mantic-changes mailing list