PublicDateAtUSN: 2018-05-17 17:00:00 UTC Candidate: CVE-2018-1124 CRD: 2018-05-17 17:00:00 UTC PublicDate: 2018-05-23 13:29:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-1124 https://www.qualys.com/2018/05/17/procps-ng-audit-report-advisory.txt https://ubuntu.com/security/notices/USN-3658-1 https://ubuntu.com/security/notices/USN-3658-2 Description: procps-ng before version 3.3.15 is vulnerable to multiple integer overflows leading to a heap corruption in file2strvec function. This allows a privilege escalation for a local attacker who can create entries in procfs by starting processes, which could result in crashes or arbitrary code execution in proc utilities run by other users. Ubuntu-Description: Notes: mdeslaur> [PATCH 074/117] proc/readproc.c: Fix bugs and overflows in mdeslaur> file2strvec(). Bugs: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=899170 Priority: medium Discovered-by: Assigned-to: mdeslaur CVSS: nvd: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H [7.8 HIGH] nvd: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H [7.8 HIGH] Patches_procps: upstream: https://gitlab.com/procps-ng/procps/commit/36c350f07c75aabf747fb833f52a234ae5781b20 upstream_procps: released (3.3.15) precise/esm_procps: released (1:3.2.8-11ubuntu6.5) trusty_procps: released (1:3.3.9-1ubuntu2.3) trusty/esm_procps: released (1:3.3.9-1ubuntu2.3) xenial_procps: released (2:3.3.10-4ubuntu2.4) esm-infra/xenial_procps: released (2:3.3.10-4ubuntu2.4) artful_procps: released (2:3.3.12-1ubuntu2.1) bionic_procps: released (2:3.3.12-3ubuntu1.1) devel_procps: released (2:3.3.15-2ubuntu1)