A local non-root user with access to the D-Bus system bus can call the UnregisterHandler method implemented in the tcmu-runner daemon with the name of an unknown tcmu runner handler as parameter and cause a NULL pointer dereference. Upstream patch: https://github.com/open-iscsi/tcmu-runner/commit/e2d953050766ac538615a811c64b34358614edce References: http://seclists.org/oss-sec/2017/q3/207
Created tcmu-runner tracking bugs for this issue: Affects: fedora-all [bug 1487255]
This issue has been addressed in the following products: Red Hat Gluster Storage 3.3 for RHEL 7 Via RHSA-2017:3277 https://access.redhat.com/errata/RHSA-2017:3277