Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2016-7795

Опубликовано: 13 окт. 2016
Источник: debian

Описание

The manager_invoke_notify_message function in systemd 231 and earlier allows local users to cause a denial of service (assertion failure and PID 1 hang) via a zero-length message received over a notify socket.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
systemdfixed231-9package
systemdnot-affectedjessiepackage
systemdnot-affectedwheezypackage

Примечания

  • https://github.com/systemd/systemd/issues/4234

  • https://github.com/systemd/systemd/commit/531ac2b2349da02acc9c382849758e07eb92b020

  • Originally fixed in 231-8 but caused a regression fixed in 231-9

  • https://www.agwa.name/blog/post/how_to_crash_systemd_in_one_tweet

Связанные уязвимости

CVSS3: 5.5
ubuntu
почти 9 лет назад

The manager_invoke_notify_message function in systemd 231 and earlier allows local users to cause a denial of service (assertion failure and PID 1 hang) via a zero-length message received over a notify socket.

CVSS3: 6.8
redhat
почти 9 лет назад

The manager_invoke_notify_message function in systemd 231 and earlier allows local users to cause a denial of service (assertion failure and PID 1 hang) via a zero-length message received over a notify socket.

CVSS3: 5.5
nvd
почти 9 лет назад

The manager_invoke_notify_message function in systemd 231 and earlier allows local users to cause a denial of service (assertion failure and PID 1 hang) via a zero-length message received over a notify socket.

CVSS3: 5.5
github
больше 3 лет назад

The manager_invoke_notify_message function in systemd 231 and earlier allows local users to cause a denial of service (assertion failure and PID 1 hang) via a zero-length message received over a notify socket.

oracle-oval
почти 9 лет назад

ELSA-2016-2610: systemd security and bug fix update (MODERATE)