https://seclists.org/oss-sec/2024/q3/57: backtrace_symbols() misuse by Ceph and its supposedly-safe use
Published Jul 12, 2024
·Updated
Affected Software
1 affected component
ceph RADOS Gateway
Frequently Asked Questions
1
What is the severity of CVE-2024-1234?
The severity of CVE-2024-1234 is rated as moderate due to the potential for deadlocks in Ceph when misusing backtrace_symbols().
2
How do I fix CVE-2024-1234?
To fix CVE-2024-1234, update your Ceph installation to the latest version that includes patches for this vulnerability.
3
What software is affected by CVE-2024-1234?
CVE-2024-1234 affects the Ceph RADOS Gateway implementation.
4
Can CVE-2024-1234 be exploited remotely?
CVE-2024-1234 is not directly exploitable remotely as it involves internal signal handling causing deadlocks.
5
What are the implications of CVE-2024-1234?
The implications of CVE-2024-1234 include potential service instability and loss of availability due to deadlocks in the Ceph system.