ALT-PU-2014-2133-1
Closed vulnerabilities
Published: 2016-10-13
Modified: 2024-11-21
Modified: 2024-11-21
CVE-2016-7796
The manager_dispatch_notify_fd function in systemd allows local users to cause a denial of service (system hang) via a zero-length message received over a notify socket, which causes an error to be returned and the notification handler to be disabled.
Severity: MEDIUM (5.5)
Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
References:
- SUSE-SU-2016:2475
- SUSE-SU-2016:2475
- SUSE-SU-2016:2476
- SUSE-SU-2016:2476
- RHSA-2017:0003
- RHSA-2017:0003
- [oss-security] 20160930 Re: CVE Request: systemd v209+: local denial-of-service attack
- [oss-security] 20160930 Re: CVE Request: systemd v209+: local denial-of-service attack
- 93250
- 93250
- 1037320
- 1037320
- https://bugzilla.redhat.com/show_bug.cgi?id=1381911
- https://bugzilla.redhat.com/show_bug.cgi?id=1381911
- https://github.com/systemd/systemd/issues/4234#issuecomment-250441246
- https://github.com/systemd/systemd/issues/4234#issuecomment-250441246
- RHBA-2015:2092
- RHBA-2015:2092
- https://www.agwa.name/blog/post/how_to_crash_systemd_in_one_tweet
- https://www.agwa.name/blog/post/how_to_crash_systemd_in_one_tweet
Closed bugs
Не выполняет /etc/firsttime.d/ вовремя.
split zsh completions for systemd and journalctl
initscript uses obsolete kernel interface