Errata ID | 400 |
---|---|
Date | 2019-01-16 |
Source package | systemd |
Fixed in version | 232-25+deb9u7A~4.3.3.201901140821 |
Description | This update addresses the following issues: * journald: do not store the iovec entry for process commandline on stack (CVE-2018-16864) * journald: set a limit on the number of fields (1k) (CVE-2018-16865) * journal-remote: set a limit on the number of fields in a message (CVE-2018-16865) * journal: fix syslog_parse_identifier() (CVE-2018-16866) * journal: do not remove multiple spaces after identifier in syslog message (CVE-2018-16866) |
Additional notes | |
CVE ID | CVE-2018-16864 CVE-2018-16865 CVE-2018-16866 |
UCS Bug number | #48463 |