Improper access control in Keepalived - CVE-2021-44225

 

Improper access control in Keepalived - CVE-2021-44225

Published: August 29, 2022


Vulnerability identifier: #VU66814
CSH Severity: Low
CVSS v4: 6.8 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N]
CVE-ID: CVE-2021-44225
CWE-ID: CWE-284
Exploitation vector: Local access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a local user to bypass implemented security restrictions.

The vulnerability exists due to the D-Bus policy does not sufficiently restrict the message destination. A local user can inspect and manipulate any property in the message and bypass implemented security restrictions.


Affected software

Keepalived
SUSE Manager Server
SUSE Manager Retail Branch Server
SUSE Manager Proxy
SUSE Linux Enterprise Storage
Red Hat Enterprise Linux for Power, little endian
Anolis OS
HPE Helion Openstack
SUSE OpenStack Cloud
SUSE OpenStack Cloud Crowbar
Red Hat Enterprise Linux for ARM 64
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux for x86_64
SUSE Linux Enterprise Server
SUSE Linux Enterprise High Performance Computing
SUSE Linux Enterprise Server for SAP Applications
SUSE Linux Enterprise High Availability
openSUSE Leap
Ubuntu
openEuler
Fedora
keepalived (Ubuntu package)
keepalived-debugsource
keepalived-debuginfo
keepalived
keepalived-help
keepalived (Red Hat package)
Red Hat OpenShift Container Platform

How to mitigate CVE-2021-44225

Install updates from vendor's website.

Keepalived - update to 2.2.5
keepalived (Ubuntu package) - addressed in versions 1:1.3.9-1ubuntu0.18.04.3, 1:2.0.19-2ubuntu0.1, 1:2.1.5-0.2ubuntu0.1, 1:2.1.5-0.2ubuntu1.1
keepalived-debugsource - addressed in versions 2.0.19-3.6.1, 2.0.19-3.9.1, 2.0.19-150100.3.6.1, 2.2.2-150400.3.5.1
keepalived-debuginfo - addressed in versions 2.0.19-3.6.1, 2.0.19-3.9.1, 2.0.19-150100.3.6.1, 2.2.2-150400.3.5.1
keepalived - addressed in versions 2.0.19-3.6.1, 2.0.19-3.9.1, 2.0.19-150100.3.6.1, 2.2.2-150400.3.5.1
keepalived - update to 2.0.20-19
keepalived-debugsource - update to 2.0.20-19
keepalived-debuginfo - update to 2.0.20-19
keepalived-help - update to 2.0.20-19
keepalived - update to 2.1.5-8
keepalived (Red Hat package) - update to 2.1.5-8.el8
keepalived - addressed in versions 2.2.4-2.fc34, 2.2.4-2.fc35
Red Hat OpenShift Container Platform - update to 4.11.0

External References

Related Security Bulletins