Performance Co-Pilot (PCP) before 3.6.5 exports some of the /proc file system, which allows attackers to obtain sensitive information such as proc/pid/maps and command line arguments.
{ "availability": "No subscription required", "ubuntu_priority": "low", "binaries": [ { "binary_version": "3.8.12ubuntu1", "binary_name": "libpcp-gui2" }, { "binary_version": "3.8.12ubuntu1", "binary_name": "libpcp-gui2-dev" }, { "binary_version": "3.8.12ubuntu1", "binary_name": "libpcp-import-perl" }, { "binary_version": "3.8.12ubuntu1", "binary_name": "libpcp-import1" }, { "binary_version": "3.8.12ubuntu1", "binary_name": "libpcp-import1-dev" }, { "binary_version": "3.8.12ubuntu1", "binary_name": "libpcp-logsummary-perl" }, { "binary_version": "3.8.12ubuntu1", "binary_name": "libpcp-mmv-perl" }, { "binary_version": "3.8.12ubuntu1", "binary_name": "libpcp-mmv1" }, { "binary_version": "3.8.12ubuntu1", "binary_name": "libpcp-mmv1-dev" }, { "binary_version": "3.8.12ubuntu1", "binary_name": "libpcp-pmda-perl" }, { "binary_version": "3.8.12ubuntu1", "binary_name": "libpcp-pmda3" }, { "binary_version": "3.8.12ubuntu1", "binary_name": "libpcp-pmda3-dev" }, { "binary_version": "3.8.12ubuntu1", "binary_name": "libpcp-trace2" }, { "binary_version": "3.8.12ubuntu1", "binary_name": "libpcp-trace2-dev" }, { "binary_version": "3.8.12ubuntu1", "binary_name": "libpcp3" }, { "binary_version": "3.8.12ubuntu1", "binary_name": "libpcp3-dev" }, { "binary_version": "3.8.12ubuntu1", "binary_name": "pcp" }, { "binary_version": "3.8.12ubuntu1", "binary_name": "pcp-import-collectl2pcp" }, { "binary_version": "3.8.12ubuntu1", "binary_name": "pcp-import-iostat2pcp" }, { "binary_version": "3.8.12ubuntu1", "binary_name": "pcp-import-mrtg2pcp" }, { "binary_version": "3.8.12ubuntu1", "binary_name": "pcp-import-sar2pcp" }, { "binary_version": "3.8.12ubuntu1", "binary_name": "pcp-import-sheet2pcp" }, { "binary_version": "3.8.12ubuntu1", "binary_name": "pcp-testsuite" }, { "binary_version": "3.8.12ubuntu1", "binary_name": "python-pcp" } ] }