First published: Thu Nov 28 2019(Updated: )
Riccardo Schirone discovered that psutil incorrectly handled certain reference counting operations. An attacker could use this issue to cause psutil to crash, resulting in a denial of service, or possibly execute arbitrary code.
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
ubuntu/python-psutil | <5.5.1-1ubuntu0.19.10.1 | 5.5.1-1ubuntu0.19.10.1 |
Ubuntu Linux | =19.10 | |
All of | ||
ubuntu/python3-psutil | <5.5.1-1ubuntu0.19.10.1 | 5.5.1-1ubuntu0.19.10.1 |
Ubuntu Linux | =19.10 | |
All of | ||
ubuntu/python-psutil | <5.5.1-1ubuntu0.19.04.1 | 5.5.1-1ubuntu0.19.04.1 |
Ubuntu Linux | =19.04 | |
All of | ||
ubuntu/python3-psutil | <5.5.1-1ubuntu0.19.04.1 | 5.5.1-1ubuntu0.19.04.1 |
Ubuntu Linux | =19.04 | |
All of | ||
ubuntu/python-psutil | <5.4.2-1ubuntu0.1 | 5.4.2-1ubuntu0.1 |
Ubuntu Linux | =18.04 | |
All of | ||
ubuntu/python3-psutil | <5.4.2-1ubuntu0.1 | 5.4.2-1ubuntu0.1 |
Ubuntu Linux | =18.04 | |
All of | ||
ubuntu/python-psutil | <3.4.2-1ubuntu0.1 | 3.4.2-1ubuntu0.1 |
Ubuntu Linux | =16.04 | |
All of | ||
ubuntu/python3-psutil | <3.4.2-1ubuntu0.1 | 3.4.2-1ubuntu0.1 |
Ubuntu Linux | =16.04 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of USN-4204-1 is classified as high due to the potential for denial of service or arbitrary code execution.
To fix USN-4204-1, upgrade to python-psutil version 5.5.1-1ubuntu0.19.10.1 or later for impacted Ubuntu releases.
USN-4204-1 affects python-psutil and python3-psutil in various Ubuntu versions including 16.04, 18.04, and 19.04.
Yes, USN-4204-1 can cause psutil to crash, leading to a denial of service.
Yes, USN-4204-1 is considered serious as it allows the possibility of arbitrary code execution.