[El-errata] ELSA-2018-1700 Important: Oracle Linux 7 procps-ng security update

Errata Announcements for Oracle Linux el-errata at oss.oracle.com
Wed May 23 12:24:31 PDT 2018


Oracle Linux Security Advisory ELSA-2018-1700

http://linux.oracle.com/errata/ELSA-2018-1700.html

The following updated rpms for Oracle Linux 7 have been uploaded to the 
Unbreakable Linux Network:

x86_64:
procps-ng-3.3.10-17.el7_5.2.i686.rpm
procps-ng-3.3.10-17.el7_5.2.x86_64.rpm
procps-ng-devel-3.3.10-17.el7_5.2.i686.rpm
procps-ng-devel-3.3.10-17.el7_5.2.x86_64.rpm
procps-ng-i18n-3.3.10-17.el7_5.2.x86_64.rpm


SRPMS:
http://oss.oracle.com/ol7/SRPMS-updates/procps-ng-3.3.10-17.el7_5.2.src.rpm



Description of changes:

[3.3.10-17.el7_5.2]
- check for truncation after calling snprintf()
- Related: CVE-2018-1124

[3.3.10-17.el7_5.1]
- fix integer overflows leading to heap overflow in file2strvec()
- Resolves: CVE-2018-1124





More information about the El-errata mailing list