Integer overflow in corosync - CVE-2018-1084
Published: April 19, 2018
Vulnerability identifier: #VU11994
CSH Severity: Low
CVSS v4: 6.9 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N]
CVE-ID: CVE-2018-1084
CWE-ID: CWE-190
Exploitation vector: Remote access
Exploit availability:
No public exploit available
Vulnerability details
The vulnerability allows a remote unauthenticated attacker to cause DoS condition on the target system.
The weakness exists in exec/totemcrypto.c due to integer overflow. A remote attacker can cause the service to crash.
The weakness exists in exec/totemcrypto.c due to integer overflow. A remote attacker can cause the service to crash.
Affected software
corosync
Debian Linux
Gentoo Linux
Fedora
corosync (Ubuntu package)
corosync (Red Hat package)
corosync
Debian Linux
Gentoo Linux
Fedora
corosync (Ubuntu package)
corosync (Red Hat package)
corosync
How to mitigate CVE-2018-1084
Update to version 2.4.4.
corosync (Ubuntu package) - addressed in versions 2.3.5-3ubuntu2.3, 2.4.3-0ubuntu1.1
corosync (Red Hat package) - update to 2.4.3-2.el7_5.1
corosync - addressed in versions 2.4.4-1.fc26, 2.4.4-1.fc27, 2.4.4-1.fc28
corosync (Red Hat package) - update to 2.4.3-2.el7_5.1
corosync - addressed in versions 2.4.4-1.fc26, 2.4.4-1.fc27, 2.4.4-1.fc28
External References
Related Security Bulletins
- Debian update for corosync
- SUSE Linux update for corosync
- SUSE Linux update for corosync
- OpenSUSE Linux update for corosync
- Ubuntu update for Corosync
- Gentoo update for corosync
- Red Hat Enterprise Linux 7 update for corosync
- Fedora 27 update for corosync
- Fedora 26 update for corosync
- Fedora 28 update for corosync