Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2021-44717

Опубликовано: 09 дек. 2021
Источник: redhat
CVSS3: 4.8
EPSS Низкий

Описание

Go before 1.16.12 and 1.17.x before 1.17.5 on UNIX allows write operations to an unintended file or unintended network connection as a consequence of erroneous closing of file descriptor 0 after file-descriptor exhaustion.

There's a flaw in golang's syscall.ForkExec() interface. An attacker who manages to first cause a file descriptor exhaustion for the process, then cause syscall.ForkExec() to be called repeatedly, could compromise data integrity and/or confidentiality in a somewhat uncontrolled way in programs linked with and using syscall.ForkExec().

Отчет

  • This flaw has had the severity level set to Moderate due to the attack complexity required to exhaust file descriptors at the time ForkExec is called, plus an attacker does not necessarily have direct control over where/how data is leaked.
  • For Service Telemetry Framework, because the flaw's impact is lower, no update will be provided at this time for its containers.
  • runc shipped with Red Hat Enterprise Linux 8 and 9 are not affected by this flaw because the flaw is already patched in the shipped versions.

Меры по смягчению последствий

This bug can be mitigated by raising the per-process file descriptor limit.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Migration Toolkit for ContainerscpmaWill not fix
OpenShift ServerlessCLIAffected
OpenShift Serverlessknative-servingAffected
OpenShift Service Mesh 2.0servicemeshAffected
OpenShift Service Mesh 2.0servicemesh-grafanaAffected
OpenShift Service Mesh 2.1servicemeshAffected
OpenShift Service Mesh 2.1servicemesh-grafanaAffected
Red Hat Advanced Cluster Security 3advanced-cluster-security/rhacs-main-rhel8Not affected
Red Hat Advanced Cluster Security 3advanced-cluster-security/rhacs-scanner-rhel8Not affected
Red Hat Ceph Storage 2golangOut of support scope

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-200
https://bugzilla.redhat.com/show_bug.cgi?id=2030806golang: syscall: don't close fd 0 on ForkExec error

EPSS

Процентиль: 63%
0.00441
Низкий

4.8 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.8
ubuntu
около 4 лет назад

Go before 1.16.12 and 1.17.x before 1.17.5 on UNIX allows write operations to an unintended file or unintended network connection as a consequence of erroneous closing of file descriptor 0 after file-descriptor exhaustion.

CVSS3: 4.8
nvd
около 4 лет назад

Go before 1.16.12 and 1.17.x before 1.17.5 on UNIX allows write operations to an unintended file or unintended network connection as a consequence of erroneous closing of file descriptor 0 after file-descriptor exhaustion.

CVSS3: 4.8
debian
около 4 лет назад

Go before 1.16.12 and 1.17.x before 1.17.5 on UNIX allows write operat ...

CVSS3: 4.8
github
около 4 лет назад

Go before 1.16.12 and 1.17.x before 1.17.5 on UNIX allows write operations to an unintended file or unintended network connection as a consequence of erroneous closing of file descriptor 0 after file-descriptor exhaustion.

suse-cvrf
около 4 лет назад

Security update for go1.17

EPSS

Процентиль: 63%
0.00441
Низкий

4.8 Medium

CVSS3

Уязвимость CVE-2021-44717