{"id":"SUSE-SU-2025:0011-1","summary":"Security update for pcp","details":"This update for pcp fixes the following issues:\n\nUpgrade to 6.2.0 (bsc#1217826 / PED#8192):\n\n- CVE-2024-45770: Fixed symlink race (bsc#1230552).\n- CVE-2024-45769: Fixed pmstore corruption (bsc#1230551)\n- CVE-2023-6917: Fixed local privilege escalation from pcp user to root (bsc#1217826).\n\nBug fixes:\n\n- Reintroduce libuv support for SLE \u003e= 15 (bsc#1231345). \n- move pmlogger_daily into main package (bsc#1222815)\n","modified":"2026-03-11T07:27:47.438890Z","published":"2025-01-03T16:49:05Z","related":["CVE-2023-6917","CVE-2024-45769","CVE-2024-45770"],"upstream":["CVE-2023-6917","CVE-2024-45769","CVE-2024-45770"],"references":[{"type":"ADVISORY","url":"https://www.suse.com/support/update/announcement/2025/suse-su-20250011-1/"},{"type":"REPORT","url":"https://bugzilla.suse.com/1217826"},{"type":"REPORT","url":"https://bugzilla.suse.com/1222815"},{"type":"REPORT","url":"https://bugzilla.suse.com/1230551"},{"type":"REPORT","url":"https://bugzilla.suse.com/1230552"},{"type":"REPORT","url":"https://bugzilla.suse.com/1231345"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2023-6917"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2024-45769"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2024-45770"}],"schema_version":"1.7.5"}