A flaw was found in systemd. An uncontrolled recursion in systemd-tmpfiles may lead to a denial of service at boot time when too many nested directories are created in /tmp.
The product does not properly control the amount of recursion that takes place, consuming excessive resources, such as allocated memory or the program stack.
Link | Tags |
---|---|
https://bugzilla.redhat.com/show_bug.cgi?id=2024639 | patch third party advisory issue tracking |
https://www.openwall.com/lists/oss-security/2022/01/10/2 | mailing list third party advisory exploit |
https://github.com/systemd/systemd/commit/5b1cf7a9be37e20133c0208005274ce4a5b5c6a1 | third party advisory patch |
https://access.redhat.com/security/cve/CVE-2021-3997 | third party advisory issue tracking |
https://security.gentoo.org/glsa/202305-15 | vendor advisory |