Lucene search

K
ubuntucveUbuntu.comUB:CVE-2018-1049
HistoryJan 17, 2018 - 12:00 a.m.

CVE-2018-1049

2018-01-1700:00:00
ubuntu.com
ubuntu.com
6

4.3 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:N/I:N/A:P

5.9 Medium

CVSS3

Attack Vector

NETWORK

Attack Complexity

HIGH

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H

0.009 Low

EPSS

Percentile

83.1%

In systemd prior to 234 a race condition exists between .mount and
.automount units such that automount requests from kernel may not be
serviced by systemd resulting in kernel holding the mountpoint and any
processes that try to use said mount will hang. A race condition like this
may lead to denial of service, until mount points are unmounted.

Bugs

OSVersionArchitecturePackageVersionFilename
ubuntu14.04noarchsystemd< 204-5ubuntu20.26UNKNOWN
ubuntu16.04noarchsystemd< 229-4ubuntu21.1UNKNOWN

4.3 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:N/I:N/A:P

5.9 Medium

CVSS3

Attack Vector

NETWORK

Attack Complexity

HIGH

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H

0.009 Low

EPSS

Percentile

83.1%