systemd: memory leak in journald-server.c introduced by fix for CVE-2018-16864
Published Jan 28, 2019
3.3
LOWCVSS 3.1
EPSS 0.40%
Description
A memory leak was discovered in the backport of fixes for CVE-2018-16864 in Red Hat Enterprise Linux. Function dispatch_message_real() in journald-server.c does not free the memory allocated by set_iovec_field_free() to store the `_CMDLINE=` entry. A local attacker may use this flaw to make systemd-journald crash. This issue only affects versions shipped with Red Hat Enterprise since v219-62.2.
Affected products
-
- Version v219-62.2 and newerStatusaffectedConstraints-
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | ||||||
|---|---|---|---|---|---|---|---|---|---|
| The systemd Project | Systemd | n/a |
|
Configuration 1
- 3.11
- 7.0
- 7.0
- 7.6
- 7.6
- 7.0
Configuration 2
- 8.0
No data.
Red Hat Enterprise Linux 7
systemd-0:219-62.el7_6.3
Fixed · RHSA-2019:0201
Red Hat Enterprise Linux 8
systemd
Not affected
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 7 | systemd-0:219-62.el7_6.3 | Fixed | RHSA-2019:0201 |
| Red Hat Enterprise Linux 8 | systemd | Not affected | n/a |
No package ranges for this CVE.
Remediation
Red Hat statement
This issue affects version 219-62 of systemd as shipped with Red Hat Enterprise Linux 7.
References (9)
- http://www.securityfocus.com/bid/106632 vdb-entryx_refsource_BIDThird Party AdvisoryVDB Entry
- https://access.redhat.com/errata/RHBA-2019:0327 vendor-advisoryx_refsource_REDHATVendor Advisory
- https://access.redhat.com/errata/RHSA-2019:0201 vendor-advisoryx_refsource_REDHATVendor Advisory
- https://access.redhat.com/security/cve/CVE-2019-3815 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1666690 Issue Tracking
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2019-3815 x_refsource_CONFIRMIssue TrackingVendor Advisory
- https://lists.debian.org/debian-lts-announce/2019/03/msg00013.html mailing-listx_refsource_MLISTMailing ListThird Party Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2019-3815
- https://www.cve.org/CVERecord?id=CVE-2019-3815
| Link | Providers | Tags |
|---|---|---|
| http://www.securityfocus.com/bid/106632 | vdb-entryx_refsource_BIDThird Party AdvisoryVDB Entry | |
| https://access.redhat.com/errata/RHBA-2019:0327 | vendor-advisoryx_refsource_REDHATVendor Advisory | |
| https://access.redhat.com/errata/RHSA-2019:0201 | vendor-advisoryx_refsource_REDHATVendor Advisory | |
| https://access.redhat.com/security/cve/CVE-2019-3815 | Vendor Advisory | |
| https://bugzilla.redhat.com/show_bug.cgi?id=1666690 | Issue Tracking | |
| https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2019-3815 | x_refsource_CONFIRMIssue TrackingVendor Advisory | |
| https://lists.debian.org/debian-lts-announce/2019/03/msg00013.html | mailing-listx_refsource_MLISTMailing ListThird Party Advisory | |
| https://nvd.nist.gov/vuln/detail/CVE-2019-3815 | ||
| https://www.cve.org/CVERecord?id=CVE-2019-3815 |
Change history (0)
No recorded changes yet.