Rapid7 Vulnerability & Exploit Database

Alma Linux: CVE-2024-45770: Important: pcp security update (Multiple Advisories)

Free InsightVM Trial No Credit Card Necessary
2024 Attack Intel Report Latest research by Rapid7 Labs
Back to Search

Alma Linux: CVE-2024-45770: Important: pcp security update (Multiple Advisories)

Severity
4
CVSS
(AV:L/AC:M/Au:N/C:P/I:P/A:P)
Published
09/19/2024
Created
09/24/2024
Added
09/23/2024
Modified
11/19/2024

Description

A vulnerability was found in Performance Co-Pilot (PCP). This flaw can only be exploited if an attacker has access to a compromised PCP system account. The issue is related to the pmpost tool, which is used to log messages in the system. Under certain conditions, it runs with high-level privileges.

Solution(s)

  • alma-upgrade-pcp
  • alma-upgrade-pcp-conf
  • alma-upgrade-pcp-devel
  • alma-upgrade-pcp-doc
  • alma-upgrade-pcp-export-pcp2elasticsearch
  • alma-upgrade-pcp-export-pcp2graphite
  • alma-upgrade-pcp-export-pcp2influxdb
  • alma-upgrade-pcp-export-pcp2json
  • alma-upgrade-pcp-export-pcp2openmetrics
  • alma-upgrade-pcp-export-pcp2spark
  • alma-upgrade-pcp-export-pcp2xml
  • alma-upgrade-pcp-export-pcp2zabbix
  • alma-upgrade-pcp-export-zabbix-agent
  • alma-upgrade-pcp-geolocate
  • alma-upgrade-pcp-gui
  • alma-upgrade-pcp-import-collectl2pcp
  • alma-upgrade-pcp-import-ganglia2pcp
  • alma-upgrade-pcp-import-iostat2pcp
  • alma-upgrade-pcp-import-mrtg2pcp
  • alma-upgrade-pcp-import-sar2pcp
  • alma-upgrade-pcp-libs
  • alma-upgrade-pcp-libs-devel
  • alma-upgrade-pcp-pmda-activemq
  • alma-upgrade-pcp-pmda-apache
  • alma-upgrade-pcp-pmda-bash
  • alma-upgrade-pcp-pmda-bcc
  • alma-upgrade-pcp-pmda-bind2
  • alma-upgrade-pcp-pmda-bonding
  • alma-upgrade-pcp-pmda-bpf
  • alma-upgrade-pcp-pmda-bpftrace
  • alma-upgrade-pcp-pmda-cifs
  • alma-upgrade-pcp-pmda-cisco
  • alma-upgrade-pcp-pmda-dbping
  • alma-upgrade-pcp-pmda-denki
  • alma-upgrade-pcp-pmda-dm
  • alma-upgrade-pcp-pmda-docker
  • alma-upgrade-pcp-pmda-ds389
  • alma-upgrade-pcp-pmda-ds389log
  • alma-upgrade-pcp-pmda-elasticsearch
  • alma-upgrade-pcp-pmda-farm
  • alma-upgrade-pcp-pmda-gfs2
  • alma-upgrade-pcp-pmda-gluster
  • alma-upgrade-pcp-pmda-gpfs
  • alma-upgrade-pcp-pmda-gpsd
  • alma-upgrade-pcp-pmda-hacluster
  • alma-upgrade-pcp-pmda-haproxy
  • alma-upgrade-pcp-pmda-infiniband
  • alma-upgrade-pcp-pmda-json
  • alma-upgrade-pcp-pmda-libvirt
  • alma-upgrade-pcp-pmda-lio
  • alma-upgrade-pcp-pmda-lmsensors
  • alma-upgrade-pcp-pmda-logger
  • alma-upgrade-pcp-pmda-lustre
  • alma-upgrade-pcp-pmda-lustrecomm
  • alma-upgrade-pcp-pmda-mailq
  • alma-upgrade-pcp-pmda-memcache
  • alma-upgrade-pcp-pmda-mic
  • alma-upgrade-pcp-pmda-mongodb
  • alma-upgrade-pcp-pmda-mounts
  • alma-upgrade-pcp-pmda-mssql
  • alma-upgrade-pcp-pmda-mysql
  • alma-upgrade-pcp-pmda-named
  • alma-upgrade-pcp-pmda-netcheck
  • alma-upgrade-pcp-pmda-netfilter
  • alma-upgrade-pcp-pmda-news
  • alma-upgrade-pcp-pmda-nfsclient
  • alma-upgrade-pcp-pmda-nginx
  • alma-upgrade-pcp-pmda-nvidia-gpu
  • alma-upgrade-pcp-pmda-openmetrics
  • alma-upgrade-pcp-pmda-openvswitch
  • alma-upgrade-pcp-pmda-oracle
  • alma-upgrade-pcp-pmda-pdns
  • alma-upgrade-pcp-pmda-perfevent
  • alma-upgrade-pcp-pmda-podman
  • alma-upgrade-pcp-pmda-postfix
  • alma-upgrade-pcp-pmda-postgresql
  • alma-upgrade-pcp-pmda-rabbitmq
  • alma-upgrade-pcp-pmda-redis
  • alma-upgrade-pcp-pmda-resctrl
  • alma-upgrade-pcp-pmda-roomtemp
  • alma-upgrade-pcp-pmda-rsyslog
  • alma-upgrade-pcp-pmda-samba
  • alma-upgrade-pcp-pmda-sendmail
  • alma-upgrade-pcp-pmda-shping
  • alma-upgrade-pcp-pmda-slurm
  • alma-upgrade-pcp-pmda-smart
  • alma-upgrade-pcp-pmda-snmp
  • alma-upgrade-pcp-pmda-sockets
  • alma-upgrade-pcp-pmda-statsd
  • alma-upgrade-pcp-pmda-summary
  • alma-upgrade-pcp-pmda-systemd
  • alma-upgrade-pcp-pmda-trace
  • alma-upgrade-pcp-pmda-unbound
  • alma-upgrade-pcp-pmda-uwsgi
  • alma-upgrade-pcp-pmda-weblog
  • alma-upgrade-pcp-pmda-zimbra
  • alma-upgrade-pcp-pmda-zswap
  • alma-upgrade-pcp-selinux
  • alma-upgrade-pcp-system-tools
  • alma-upgrade-pcp-testsuite
  • alma-upgrade-pcp-zeroconf
  • alma-upgrade-perl-pcp-logimport
  • alma-upgrade-perl-pcp-logsummary
  • alma-upgrade-perl-pcp-mmv
  • alma-upgrade-perl-pcp-pmda
  • alma-upgrade-python3-pcp

insightVM

Advanced vulnerability management analytics and reporting.
Key Features
  • Lightweight Endpoint Agent
  • Live Dashboards
  • Real Risk Prioritization
  • IT-Integrated Remediation Projects
  • Cloud, Virtual, and Container Assessment
  • Integrated Threat Feeds
  • Easy-to-Use RESTful API
  • Automation-Assisted Patching
  • Automated Containment
Free InsightVM Trial View All Features

With Rapid7 live dashboards, I have a clear view of all the assets on my network, which ones can be exploited, and what I need to do in order to reduce the risk in my environment in real-time. No other tool gives us that kind of value and insight.

– Scott Cheney, Manager of Information Security, Sierra View Medical Center

;