[Bug 2104368] [NEW] lastcomm process accounting buffer overflow

Bart Swennen 2104368 at bugs.launchpad.net
Thu Mar 27 11:51:58 UTC 2025


*** This bug is a security vulnerability ***

Public security bug reported:

The lastcomm command terminates with a buffer overflow error.
This makes it impossible to see which processes were run on the system, which is important in case malicious activity is suspected on the system, hence the security qualification.

** Affects: acct (Ubuntu)
     Importance: Undecided
         Status: New

** Attachment added: "crash dump"
   https://bugs.launchpad.net/bugs/2104368/+attachment/5867628/+files/_usr_bin_lastcomm.0.crash

** Information type changed from Private Security to Public Security

-- 
You received this bug notification because you are a member of Ubuntu
Foundations Bugs, which is subscribed to acct in Ubuntu.
https://bugs.launchpad.net/bugs/2104368

Title:
  lastcomm process accounting buffer overflow

Status in acct package in Ubuntu:
  New

Bug description:
  The lastcomm command terminates with a buffer overflow error.
  This makes it impossible to see which processes were run on the system, which is important in case malicious activity is suspected on the system, hence the security qualification.

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/acct/+bug/2104368/+subscriptions




More information about the foundations-bugs mailing list