Errata overview
Errata ID 400
Date 2019-01-16
Source package systemd
Fixed in version 232-25+deb9u7A~4.3.3.201901140821
Description
This update addresses the following issues:
* journald: do not store the iovec entry for process commandline on stack
  (CVE-2018-16864)
* journald: set a limit on the number of fields (1k) (CVE-2018-16865)
* journal-remote: set a limit on the number of fields in a message
  (CVE-2018-16865)
* journal: fix syslog_parse_identifier() (CVE-2018-16866)
* journal: do not remove multiple spaces after identifier in syslog message
  (CVE-2018-16866)
Additional notes
CVE ID CVE-2018-16864
CVE-2018-16865
CVE-2018-16866
UCS Bug number #48463