REDHAT-BUG-1138145: Medium severity centos glusterfs vulnerability
IssueDescription:
A denial of service flaw was found in the way the socketprotostatemachine() function of glusterfs processed certain fragment headers. A remote attacker could send a specially crafted fragment header that, when processed, would cause the glusterfs process to enter an infinite loop.
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-1138145?
The severity of REDHAT-BUG-1138145 is considered high due to its potential for denial of service.
How do I fix REDHAT-BUG-1138145?
To fix REDHAT-BUG-1138145, update to the latest version of glusterfs as per the available patches.
What are the symptoms of REDHAT-BUG-1138145?
The symptoms of REDHAT-BUG-1138145 include the glusterfs process entering an infinite loop, leading to service disruption.
Who is affected by REDHAT-BUG-1138145?
Users of glusterfs are affected by REDHAT-BUG-1138145, particularly those exposed to untrusted or remote connections.
Is there a workaround for REDHAT-BUG-1138145?
Currently, there is no official workaround for REDHAT-BUG-1138145 aside from applying the necessary updates.