PT-2018-2288 · Systemd+5 · Systemd-Journald+5

Published

2018-11-27

·

Updated

2024-06-15

·

CVE-2018-16864

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions systemd-journald versions through v240
Description The issue is caused by an unbounded memory allocation in systemd-journald, potentially leading to a stack clash with another memory region when a program with long command line arguments calls syslog. This could allow an attacker to crash systemd-journald or escalate their privileges.
Recommendations For versions through v240, consider restricting access to the syslog function to minimize the risk of exploitation until a patch is available. As a temporary workaround, consider disabling the syslog function in affected systems until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Allocation of Resources Without Limits

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2019-1023
ALT-PU-2019-1260
BDU:2019-00412
BDU:2019-01752
CESA-2019_0049
CVE-2018-16864
DLA-1639-1
DLA-1711-1
DSA-4367-1
DSA-4367-2
OPENSUSE-SU-2019:0098-1
OPENSUSE-SU-2019_0097-1
OPENSUSE-SU-2019_0098-1
OPENSUSE-SU-2024:11420-1
RHSA-2019:0049
RHSA-2019:0204
RHSA-2019:0271
RHSA-2019:0342
RHSA-2019:0361
RHSA-2019:2402
RHSA-2019_0049
SUSE-SU-2019:0053-1
SUSE-SU-2019:0054-1
SUSE-SU-2019:0054-2
SUSE-SU-2019:0135-1
SUSE-SU-2019:0137-1
SUSE-SU-2019_0135-1
SUSE-SU-2019_0137-1
USN-3855-1

Affected Products

Alt Linux
Centos
Red Hat
Suse
Ubuntu
Systemd-Journald