On Thu, Nov 22, 2018 at 09:35:39PM +0100, Salvatore Bonaccorso wrote: > Source: sysstat > Version: 12.0.1-1 > Severity: important > Tags: security upstream > Forwarded: https://github.com/sysstat/sysstat/issues/196 > > Hi, > > The following vulnerability was published for sysstat. > > CVE-2018-19416[0]: > | An issue was discovered in sysstat 12.1.1. The remap_struct function in > | sa_common.c has an out-of-bounds read during a memmove call, as > | demonstrated by sadf.
Fixed https://github.com/sysstat/sysstat/commit/fbc691eaaa10d0bcea6741d5a223dc3906106548 Can we please get that fixed for buster? Cheers, Moritz