CVE-2023-4016

Severity CVSS v4.0:
Pending analysis
Type:
CWE-787 Out-of-bounds Write
Publication date:
02/08/2023
Last modified:
15/12/2023

Description

Under some circumstances, this weakness allows a user who has access to run the “ps” utility on a machine, the ability to write almost unlimited amounts of unfiltered data into the process heap.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:procps_project:procps:*:*:*:*:*:*:*:* 3.3.0 (including) 4.0.3 (including)
cpe:2.3:o:fedoraproject:fedora:38:*:*:*:*:*:*:*