CVE-2019-16167: Integer Overflow
Published Sep 9, 2019
·Updated
Last updated 25 August 2025
Other sources
sysstat before 12.1.6 has memory corruption due to an Integer Overflow in remapstruct() in sacommon.c.
— Launchpad
Affected Software
10 affected componentsFixes available
Sysstat Project Sysstat<12.1.6
Fedoraproject Fedora=31
openSUSE Leap=15.0
openSUSE Leap=15.1
Canonical Ubuntu Linux=16.04
Canonical Ubuntu Linux=18.04
Canonical Ubuntu Linux=19.04
Canonical Ubuntu Linux=19.10
Debian Debian Linux=10.0
debian/sysstat
12.5.2-212.5.2-2+deb11u112.6.1-112.7.5-2
Remediation
Event History
Sep 9, 2019
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeaknessAffected Software
Feb 20, 2026
Data Sourced
via Ubuntu·11:50 PM
RemedyDescriptionSeverityAffected Software
Data Sourced
via Debian·11:50 PM
DescriptionAffected Software
Data Sourced
via Launchpad·11:51 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2019-16167.
2
What is the severity of CVE-2019-16167?
The severity of CVE-2019-16167 is medium with a severity value of 5.5.
3
Which software versions are affected by CVE-2019-16167?
The versions affected by CVE-2019-16167 include sysstat before 12.1.6.
4
How can I fix CVE-2019-16167?
To fix CVE-2019-16167, update sysstat to version 12.1.6 or later.
5
Where can I find more information about CVE-2019-16167?
More information about CVE-2019-16167 can be found at the following references: [Link 1](http://lists.opensuse.org/opensuse-security-announce/2019-10/msg00067.html), [Link 2](http://lists.opensuse.org/opensuse-security-announce/2019-10/msg00068.html), [Link 3](https://github.com/sysstat/sysstat/compare/v12.1.5...v12.1.6).