Bug 1464185
Summary: | jsvc doesn't work after kernel update for CVE-2017-1000364 | ||
---|---|---|---|
Product: | Red Hat Enterprise Linux 7 | Reporter: | Coty Sutherland <csutherl> |
Component: | apache-commons-daemon | Assignee: | Java maintainers <java-maint> |
Status: | CLOSED DUPLICATE | QA Contact: | BaseOS QE - Apps <qe-baseos-apps> |
Severity: | urgent | Docs Contact: | |
Priority: | unspecified | ||
Version: | 7.4 | CC: | chris.reed, csutherl, dmoppert, hmatsumo, james.saffer, jkejda, kwalker, pasik, phoned |
Target Milestone: | rc | ||
Target Release: | --- | ||
Hardware: | Unspecified | ||
OS: | Unspecified | ||
Whiteboard: | |||
Fixed In Version: | Doc Type: | If docs needed, set a value | |
Doc Text: | Story Points: | --- | |
Clone Of: | Environment: | ||
Last Closed: | 2017-07-28 18:56:59 UTC | Type: | Bug |
Regression: | --- | Mount Type: | --- |
Documentation: | --- | CRM: | |
Verified Versions: | Category: | --- | |
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
Cloudforms Team: | --- | Target Upstream Version: | |
Embargoed: | |||
Bug Depends On: | 1464237 | ||
Bug Blocks: | 1464064 |
Description
Coty Sutherland
2017-06-22 15:16:40 UTC
Debian is correcting their kernel patch for CVE-2017-1000364 which also suffers from this regression. https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=865303 For reference, their new patch is available at: https://anonscm.debian.org/cgit/kernel/linux.git/commit/?h=benh/jessie-security&id=917c0e5682eafc89bf9b6b041b7b019332d6fb08 Is a similar fix likely to be applied to the Red Hat kernel? I haven't seen any comments from the jsvc maintainers about why jsvc is affected and whether it is partially at fault or not. According to bug 1461333, bug 1464237 is tracking userland breakage; but I don't have permissions to view bug 1464237. We've hit this on RHEL 6 (2.6.32-696.3.2) as well (as mentioned in other bugs) using a large vendors product. Haven't verified myself It appears there is a bugfix kernel for RHEL7 https://access.redhat.com/errata/RHBA-2017:1674 Initial testing of this particular failure indicates that this is a duplicate of the issue documented in the following article: JVM crashes after updating to kernel with patch for Stack Guard flaw (CVE-2017-1000364) - Red Hat Customer Portal https://access.redhat.com/solutions/3091371 With that being the case, I am closing this bug as a DUPLICATE. Please feel free to reopen this bug in future if the issue is still present after updating to a kernel version included in the resolution section of the above article. - Kyle Walker *** This bug has been marked as a duplicate of bug 1464290 *** |