PT-2023-36236 · Conmon · Conmon
Publicado
2023-07-26
·
Atualizado
2023-07-26
Nenhuma
Não há classificações de severidade ou métricas disponíveis. Quando houver, atualizaremos as informações correspondentes na página.
Name of the Vulnerable Software and Affected Versions
conmon versions prior to 2.1.7
Description
The issue concerns conmon, where several bugs have been fixed, including leaking symbolic links in the opt socket path directory, cgroup oom issues, and OOM watcher for cgroupv2
oom kill events. The go version has been bumped to 1.19.Recommendations
Update conmon to version 2.1.7 to resolve the issues. As a temporary workaround, consider restricting access to the opt socket path directory to minimize the risk of exploitation. Avoid using the
oom kill events in cgroupv2 until the issue is resolved. Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Conmon