ALAS2023-2023-191


Amazon Linux 2023 Security Advisory: ALAS-2023-191
Advisory Release Date: 2023-06-05 16:38 Pacific
Advisory Updated Date: 2023-06-07 20:08 Pacific
Severity: Important

Issue Overview:

sysstat through 12.7.2 allows a multiplication integer overflow in check_overflow in common.c. NOTE: this issue exists because of an incomplete fix for CVE-2022-39377. (CVE-2023-33204)


Affected Packages:

sysstat


Issue Correction:
Run dnf update sysstat --releasever 2023.0.20230607 to update your system.

New Packages:
aarch64:
    sysstat-debugsource-12.5.6-1.amzn2023.0.3.aarch64
    sysstat-debuginfo-12.5.6-1.amzn2023.0.3.aarch64
    sysstat-12.5.6-1.amzn2023.0.3.aarch64

src:
    sysstat-12.5.6-1.amzn2023.0.3.src

x86_64:
    sysstat-debugsource-12.5.6-1.amzn2023.0.3.x86_64
    sysstat-debuginfo-12.5.6-1.amzn2023.0.3.x86_64
    sysstat-12.5.6-1.amzn2023.0.3.x86_64