Lucene search

K
nvd[email protected]NVD:CVE-2022-45873
HistoryNov 23, 2022 - 11:15 p.m.

CVE-2022-45873

2022-11-2323:15:10
CWE-400
web.nvd.nist.gov
1
systemd
local users
systemd-coredump deadlock
crash
backtrace
parse_elf_object
exploitation methodology
nested directory
deadlock
maxconnections.

5.5 Medium

CVSS3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

0.0004 Low

EPSS

Percentile

5.1%

systemd 250 and 251 allows local users to achieve a systemd-coredump deadlock by triggering a crash that has a long backtrace. This occurs in parse_elf_object in shared/elf-util.c. The exploitation methodology is to crash a binary calling the same function recursively, and put it in a deeply nested directory to make its backtrace large enough to cause the deadlock. This must be done 16 times when MaxConnections=16 is set for the systemd/units/systemd-coredump.socket file.

Affected configurations

NVD
Node
systemd_projectsystemdRange250251
OR
systemd_projectsystemdMatch252rc1
OR
systemd_projectsystemdMatch252rc2
Node
fedoraprojectfedoraMatch36

5.5 Medium

CVSS3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

0.0004 Low

EPSS

Percentile

5.1%