Use-after-free in systemd - CVE-2020-1712
Published: February 13, 2020 / Updated: March 7, 2020
Vulnerability details
The vulnerability allows a local user to escalate privileges on the system.
The vulnerability exists due to a use-after-free error when processing dbus messages during asynchronous Polkit queries in bus-polkit.c in systemd. A local unprivileged user can send a specially crafted dbus message, trigger a use-after-free error and crash services or execute arbitrary code on the system with elevated privileges.
Affected software
Red Hat Enterprise Linux Server for x86_64 - Update Services for SAP Solutions
systemd-container
systemd-debuginfo
systemd-debugsource
systemd-devel
systemd-help
systemd-journal-remote
systemd-libs
systemd-udev
systemd-udev-compat
Arch Linux
Gentoo Linux
Red Hat Enterprise Linux for x86_64
Red Hat Enterprise Linux for IBM z Systems
Opensuse
openEuler
Fedora
How to mitigate CVE-2020-1712
systemd - update to 241-14.git18dd3fb.fc30
systemd - update to 243-22
systemd-container - update to 243-22
systemd-debuginfo - update to 243-22
systemd-debugsource - update to 243-22
systemd-devel - update to 243-22
systemd-help - update to 243-22
systemd-journal-remote - update to 243-22
systemd-libs - update to 243-22
systemd-udev - update to 243-22
systemd-udev-compat - update to 243-22