CVE-2018-19416Out-of-bounds Read in Sysstat

CWE-125Out-of-bounds Read8 documents7 sources
Severity
7.8HIGHNVD
EPSS
0.3%
top 49.23%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedNov 21
Latest updateMay 14

Description

An issue was discovered in sysstat 12.1.1. The remap_struct function in sa_common.c has an out-of-bounds read during a memmove call, as demonstrated by sadf.

CVSS vector

CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages5 packages

🔴Vulnerability Details

2
GHSA
GHSA-97xc-q363-prgw: An issue was discovered in sysstat 122022-05-14
OSV
CVE-2018-19416: An issue was discovered in sysstat 122018-11-21

📋Vendor Advisories

3
Red Hat
sysstat: Out-of-bounds read in remap_struct function in sa_common.c2018-11-21
Microsoft
An issue was discovered in sysstat 12.1.1. The remap_struct function in sa_common.c has an out-of-bounds read during a memmove call, as demonstrated by sadf.2018-11-13
Debian
CVE-2018-19416: sysstat - An issue was discovered in sysstat 12.1.1. The remap_struct function in sa_commo...2018

💬Community

2
Bugzilla
CVE-2018-19416 sysstat: Out-of-bounds read in remap_struct function in sa_common.c [fedora-all]2018-11-22
Bugzilla
CVE-2018-19416 sysstat: Out-of-bounds read in remap_struct function in sa_common.c2018-11-22