ALAS2-2023-1920 --- util-linuxID: oval:org.secpod.oval:def:1701142 | Date: (C)2023-02-09 (M)2024-04-17 |
Class: PATCH | Family: unix |
** DISPUTED ** An integer overflow in util-linux through 2.37.1 can potentially cause a buffer overflow if an attacker were able to use system resources in a way that leads to a large number in the /proc/sysvipc/sem file. NOTE: this is unexploitable in GNU C Library environments, and possibly in all realistic environments
Product: |
util-linux |
libfdisk |
libsmartcols |
libmount |
libblkid |
libuuid |
uuidd |
python-libmount |