CVE-2018-1123 PUBLISHED

procps-ng before version 3.3.15 is vulnerable to a denial of service in ps via mmap buffer overflow. Inbuilt protection in ps maps a guard page at the end of the overflowed buffer, ensuring that the impact of this flaw is limited to a crash (temporary denial of service).

EPSS 3.62% · 87.7th percentile

Risk Scores

EPSS Score
3.62%
87.7th percentile

Affected Products

VendorProductVersions
Ubuntu:18.04:LTSprocps2:3.3.12-3ubuntu1, 2:3.3.12-1ubuntu2, 0
Ubuntu:14.04:LTSprocps1:3.3.8-2ubuntu1, 1:3.3.8-2ubuntu3, 1:3.3.9-1ubuntu2
Ubuntu:16.04:LTSprocps2:3.3.10-4ubuntu2, 2:3.3.10-4ubuntu2.2, 2:3.3.10-4ubuntu2.3

Timeline

References

Open in Interactive Console →