New issue
Advanced search Search tips

Issue 789496 link

Starred by 1 user

Issue metadata

Status: Fixed
Owner:
Closed: Nov 2017
Cc:
EstimatedDays: ----
NextAction: ----
OS: Chrome
Pri: 2
Type: Bug-Security



Sign in to add a comment

CrOS: Vulnerability reported in net-misc/rsync

Project Member Reported by vomit.go...@appspot.gserviceaccount.com, Nov 29 2017

Issue description

Automated analysis has detected that the following third party packages have had vulnerabilities publicly reported. 

NOTE: There may be several bugs listed below - in almost all cases, all bugs can be quickly addressed by upgrading to the latest version of the package.

Package Name: net-misc/rsync
Package Version: [cpe:/a:samba:rsync:3.1.2]

Advisory: CVE-2017-16548
  Details: https://vomit.googleplex.com/advisory?id=CVE/CVE-2017-16548
  CVSS severity score: 7.5/10.0
  Confidence: high
  Description:

The receive_xattr function in xattrs.c in rsync 3.1.2 and 3.1.3-development does not check for a trailing '\0' character in an xattr name, which allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) or possibly have unspecified other impact by sending crafted data to the daemon.


 
Cc: vapier@chromium.org
Owner: allenwebb@chromium.org
Status: Assigned (was: Untriaged)
Cc: allenwebb@chromium.org
Labels: Security_Severity-Low
Owner: ljusten@chromium.org
Hey Lutz, it looks like we bring in rsync via samba can you take a look to make sure this is fixed on ToT?

Comment 4 by vapier@chromium.org, Nov 30 2017

Labels: -ComponentOSKernel
Status: Fixed (was: Assigned)
the lakitu guys handled this via b/69896276:
  https://chromium-review.googlesource.com/797673
Project Member

Comment 5 by sheriffbot@chromium.org, Dec 1 2017

Labels: -Restrict-View-SecurityTeam Restrict-View-SecurityNotify
Project Member

Comment 6 by sheriffbot@chromium.org, Mar 9 2018

Labels: -Restrict-View-SecurityNotify allpublic
This bug has been closed for more than 14 weeks. Removing security view restrictions.

For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot
Project Member

Comment 7 by sheriffbot@chromium.org, Jul 28

Labels: -Pri-1 Pri-2

Sign in to add a comment