Skip to content

osquery

v5.23.1 Security

This release includes 3 security fixes for security teams reviewing exposed deployments.

✓ No known CVEs patched
Read the diff → Tool health → What is this tool? →
This release patches 3 known CVEs

Topics

intrusion-detection monitoring security sql

Summary

AI summary

Fixes heap buffer overflows, use-after-free, permission errors, and certificate column issues.

Full changelog

This is a bug and security fix release.

What's Changed

Fixes

  • Fix heap buffer overflow in Windows processes table by @seph in https://github.com/osquery/osquery/pull/8934
  • Fix heap buffer overflow in Windows authenticode table by @seph in https://github.com/osquery/osquery/pull/8923
  • Fix use-after-free in Linux process_file_events implementation by @zwass in https://github.com/osquery/osquery/pull/8950
  • Fix incorrect permissions on temporary file carve directories by @zwass in https://github.com/osquery/osquery/pull/8961
  • Fix documentation for process_open_handles table by @seph in https://github.com/osquery/osquery/pull/8853
  • Fix subject2 and issuer2 columns for Windows certificates table by @getvictor in https://github.com/osquery/osquery/pull/8963

Full Changelog: https://github.com/osquery/osquery/compare/5.23.0...5.23.1

Security Fixes

  • Fix heap buffer overflow in Windows `processes` table
  • Fix heap buffer overflow in Windows `authenticode` table
  • Fix use-after-free in Linux `process_file_events` implementation

Weekly OSS security release digest.

The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.

No spam, unsubscribe anytime.

Share this release

Track osquery

Get notified when new releases ship.

Sign up free

About osquery

SQL powered operating system instrumentation, monitoring, and analytics

All releases →

Beta — feedback welcome: [email protected]