Back to bug 2158266

Who When What Removed Added
Anten Skrabec 2023-01-04 20:58:36 UTC Doc Text A potential race condition issue exists within the Amazon EFS mount helper in efs-utils versions v1.34.3 and below. When using TLS to mount file systems, the mount helper allocates a local port for stunnel to receive NFS connections prior to applying the TLS tunnel. In affected versions, concurrent mount operations can allocate the same local port, leading to either failed mount operations or an inappropriate mapping from an EFS customer’s local mount points to that customer’s EFS file systems. A potential race condition issue exists when using TLS to mount file systems, the mount helper allocates a local port for stunnel to receive NFS connections prior to applying the TLS tunnel. In affected versions, concurrent mount operations can allocate the same local port, leading to either failed mount operations or an inappropriate mapping from an EFS customer’s local mount points to that customer’s EFS file systems.
CC dfreiber, jburrell, rogbas, vkumar
Paige Jung 2023-01-04 23:52:38 UTC Doc Text A potential race condition issue exists when using TLS to mount file systems, the mount helper allocates a local port for stunnel to receive NFS connections prior to applying the TLS tunnel. In affected versions, concurrent mount operations can allocate the same local port, leading to either failed mount operations or an inappropriate mapping from an EFS customer’s local mount points to that customer’s EFS file systems. A potential race condition issue exists within the Amazon EFS mount helper in efs-utils and aws-efs-csi-driver when using TLS to mount file systems. The mount helper allocates a local port for stunnel to receive NFS connections prior to applying the TLS tunnel. In affected versions, concurrent mount operations can allocate the same local port, leading to either failed mount operations or an inappropriate mapping from an EFS customer’s local mount points to that customer’s EFS file systems.
errata-xmlrpc 2023-01-30 17:31:48 UTC Link ID Red Hat Product Errata RHSA-2023:0450
Product Security DevOps Team 2023-02-01 07:55:52 UTC Resolution --- ERRATA
Status NEW CLOSED
Last Closed 2023-02-01 07:55:52 UTC
Asheth 2023-02-09 03:15:34 UTC Flags needinfo?(security-response-team)
CC asheth, security-response-team
Doc Type --- If docs needed, set a value
Product Security DevOps Team 2023-02-12 02:28:45 UTC Flags needinfo?(security-response-team) needinfo?(askrabec)
Anten Skrabec 2023-02-13 18:51:56 UTC Flags needinfo?(askrabec) needinfo?(asheth)
dwight bowman 2023-07-15 08:11:58 UTC CC MalissaSeeringhgw16
Jonathan Wakely 2023-07-17 15:05:36 UTC Comment 9 Tag spam

Back to bug 2158266