Bugzilla will be upgraded to version 5.0 on a still to be determined date in the near future. The original upgrade date has been delayed.
Bug 1534701 - (CVE-2018-1049) CVE-2018-1049 systemd: automount: access to automounted volumes can lock up
CVE-2018-1049 systemd: automount: access to automounted volumes can lock up
Status: CLOSED ERRATA
Product: Security Response
Classification: Other
Component: vulnerability (Show other bugs)
unspecified
All Linux
medium Severity medium
: ---
: ---
Assigned To: Red Hat Product Security
impact=moderate,public=20170509,repor...
: Security
Depends On: 1535130 1535134 1535135 1535462 1535463
Blocks: 1534699
  Show dependency treegraph
 
Reported: 2018-01-15 13:30 EST by Pedro Sampaio
Modified: 2018-02-18 23:50 EST (History)
10 users (show)

See Also:
Fixed In Version: systemd-234
Doc Type: If docs needed, set a value
Doc Text:
A race condition was found in systemd. This could result in automount requests not being serviced and processes using them could hang, causing denial of service.
Story Points: ---
Clone Of:
Environment:
Last Closed: 2018-02-18 23:50:23 EST
Type: ---
Regression: ---
Mount Type: ---
Documentation: ---
CRM:
Verified Versions:
Category: ---
oVirt Team: ---
RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: ---


Attachments (Terms of Use)


External Trackers
Tracker ID Priority Status Summary Last Updated
Red Hat Product Errata RHSA-2018:0260 normal SHIPPED_LIVE Moderate: systemd security update 2018-01-31 18:54:36 EST

  None (edit)
Description Pedro Sampaio 2018-01-15 13:30:11 EST
In systemd prior to 234 a race exists between .mount and .automount units such that automount requests from kernel may not be serviced by systemd resulting in kernel holding the mountpoint and any processes that try to use said mount will hang. A race like this may lead to denial of service, until mount points are unmounted.

References:

https://bugs.launchpad.net/ubuntu/+source/systemd/+bug/1709649

https://github.com/coreos/bugs/issues/1630

http://seclists.org/oss-sec/2018/q1/80

An upstream issue:

https://github.com/systemd/systemd/pull/5916

An upstream patch:

https://github.com/systemd/systemd/commit/e7d54bf58789545a9eb0b3964233defa0b007318
Comment 2 Vladis Dronov 2018-01-16 11:53:57 EST
Created systemd tracking bugs for this issue:

Affects: fedora-all [bug 1535130]
Comment 5 errata-xmlrpc 2018-01-31 13:49:37 EST
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 7

Via RHSA-2018:0260 https://access.redhat.com/errata/RHSA-2018:0260

Note You need to log in before you can comment on or make changes to this bug.