Bug 1190212 - fcgi: stack smashing while using a lot of connections
Summary: fcgi: stack smashing while using a lot of connections
Keywords:
Status: CLOSED ERRATA
Alias: None
Product: Red Hat Ceph Storage
Classification: Red Hat Storage
Component: Build
Version: 1.2.2
Hardware: Unspecified
OS: Unspecified
unspecified
medium
Target Milestone: pre-dev-freeze
: 1.2.3
Assignee: Ken Dreyer (Red Hat)
QA Contact: Warren
URL:
Whiteboard:
Depends On:
Blocks: CVE-2012-6687
TreeView+ depends on / blocked
 
Reported: 2015-02-06 16:36 UTC by Ken Dreyer (Red Hat)
Modified: 2022-02-21 18:45 UTC (History)
6 users (show)

Fixed In Version:
Doc Type: Bug Fix
Doc Text:
Clone Of:
Environment:
Last Closed: 2015-03-23 12:37:35 UTC
Embargoed:


Attachments (Terms of Use)


Links
System ID Private Priority Status Summary Last Updated
Debian BTS 681591 0 None None None Never
Launchpad 933417 0 None None None Never
Red Hat Issue Tracker RHCEPH-3544 0 None None None 2022-02-21 18:45:02 UTC
Red Hat Product Errata RHBA-2015:0713 0 normal SHIPPED_LIVE ceph-common bug fix and enhancement update 2015-03-23 16:36:14 UTC

Description Ken Dreyer (Red Hat) 2015-02-06 16:36:08 UTC
Copying from the EPEL bug report ( https://bugzilla.redhat.com/show_bug.cgi?id=1189958 )

------------------------------------------------------------------------

A stack-smashing bug for fcgi was reported to Ubuntu and subsequently patched in both Ubuntu and Debian.

According to the bug report, if more than 1024 connections are received, a segfault can occur.

A patch is provided with the bug reports:

https://bugs.launchpad.net/ubuntu/+source/libfcgi/+bug/933417

and the report at debian:

https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=681591

Comment 1 Ken Dreyer (Red Hat) 2015-02-06 17:12:45 UTC
Yehuda confirmed today that this bug can affect Ceph's RGW.

Comment 2 Ken Dreyer (Red Hat) 2015-02-10 05:29:39 UTC
Fixed in the following Brew builds:

fcgi-2.4.0-25.el7cp
fcgi-2.4.0-12.el6cp

Comment 4 John Poelstra 2015-02-19 18:56:02 UTC
need to add to errata

Comment 11 errata-xmlrpc 2015-03-23 12:37:35 UTC
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.

For information on the advisory, and where to find the updated
files, follow the link below.

If the solution does not work for you, open a new bug report.

https://rhn.redhat.com/errata/RHBA-2015-0713.html


Note You need to log in before you can comment on or make changes to this bug.