Vulnerability Description
systemd 250 and 251 allows local users to achieve a systemd-coredump deadlock by triggering a crash that has a long backtrace. This occurs in parse_elf_object in shared/elf-util.c. The exploitation methodology is to crash a binary calling the same function recursively, and put it in a deeply nested directory to make its backtrace large enough to cause the deadlock. This must be done 16 times when MaxConnections=16 is set for the systemd/units/systemd-coredump.socket file.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Systemd Project | Systemd | >= 250, <= 251 |
| Fedoraproject | Fedora | 36 |
Related Weaknesses (CWE)
References
- https://github.com/systemd/systemd/commit/076b807be472630692c5348c60d0c2b7b28ad4PatchThird Party Advisory
- https://github.com/systemd/systemd/pull/24853#issuecomment-1326561497Issue TrackingPatchThird Party Advisory
- https://github.com/systemd/systemd/pull/25055#issuecomment-1313733553Issue TrackingPatchThird Party Advisory
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedorapro
- https://github.com/systemd/systemd/commit/076b807be472630692c5348c60d0c2b7b28ad4PatchThird Party Advisory
- https://github.com/systemd/systemd/pull/24853#issuecomment-1326561497Issue TrackingPatchThird Party Advisory
- https://github.com/systemd/systemd/pull/25055#issuecomment-1313733553Issue TrackingPatchThird Party Advisory
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedorapro
FAQ
What is CVE-2022-45873?
CVE-2022-45873 is a vulnerability with a CVSS score of 5.5 (MEDIUM). systemd 250 and 251 allows local users to achieve a systemd-coredump deadlock by triggering a crash that has a long backtrace. This occurs in parse_elf_object in shared/elf-util.c. The exploitation me...
How severe is CVE-2022-45873?
CVE-2022-45873 has been rated MEDIUM with a CVSS base score of 5.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2022-45873?
Check the references section above for vendor advisories and patch information. Affected products include: Systemd Project Systemd, Fedoraproject Fedora.