PT-2020-10440 · Opensuse · Lustre

Published

2020-01-27

·

Updated

2020-01-29

·

CVE-2019-20427

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Lustre file system versions prior to 2.12.3
Description The issue is related to a buffer overflow and panic, and possibly remote code execution, in the ptlrpc module due to the lack of validation for specific fields of packets sent by a client. This occurs because of an interaction between req capsule get size and tgt brw write that leads to a tgt shortio2pages integer signedness error.
Recommendations For versions prior to 2.12.3, update to version 2.12.3 or later to resolve the issue. As a temporary workaround, consider restricting access to the ptlrpc module to minimize the risk of exploitation.

Exploit

Fix

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2019-20427

Affected Products

Lustre