First published: Thu Oct 19 2017(Updated: )
A flaw was found in GlusterFS in versions prior to 3.10. A null pointer dereference in send_brick_req function in glusterfsd/src/gf_attach.c may be used to cause denial of service.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
CentOS GlusterFS | <=3.9.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-15096 has a severity rating that indicates it could lead to a denial of service in affected versions of GlusterFS.
To remediate CVE-2017-15096, upgrade GlusterFS to version 3.10 or later.
CVE-2017-15096 affects GlusterFS versions prior to 3.10.
The potential impact of CVE-2017-15096 is a denial of service condition due to a null pointer dereference.
There is no documented workaround for CVE-2017-15096, so upgrading is the best solution.