sysstat-12.5.4-7.el9

エラータID: AXSA:2023-6621:04

Release date: 
Thursday, December 7, 2023 - 06:45
Subject: 
sysstat-12.5.4-7.el9
Affected Channels: 
MIRACLE LINUX 9 for x86_64
Severity: 
Moderate
Description: 

The sysstat packages provide the sar and iostat commands. These commands enable system monitoring of disk, network, and other I/O activity.

Security Fix(es):

* sysstat: check_overflow() function can work incorrectly, which could lead to an overflow (CVE-2023-33204)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

CVE-2023-33204
sysstat through 12.7.2 allows a multiplication integer overflow in check_overflow in common.c. NOTE: this issue exists because of an incomplete fix for CVE-2022-39377.

Solution: 

Update packages.

Additional Info: 

N/A

Download: 

SRPMS
  1. sysstat-12.5.4-7.el9.src.rpm
    MD5: a248e5acc3220ec62e74c7136de2cb18
    SHA-256: b3f25760dd8ee9d588b27b8b311489b57c9ba39ffa86da542e30f87cf731512a
    Size: 1.32 MB

Asianux Server 9 for x86_64
  1. sysstat-12.5.4-7.el9.x86_64.rpm
    MD5: a5b4d70422bc94654f587e9018ea51d2
    SHA-256: 37d8c380123e90887c81c7a5eec41b184c6e38a0e7a9ebc07490c8f6b9157972
    Size: 462.88 kB