GPU VulnDB

Database/Control plane, storage & DevOps

GlusterFS (brick, server-rpc-fops.c): Multiple stack buffer overflows from fixed-size alloca() allocations in the brick

CVE-2018-10907Control plane, storage & DevOpscurated

Impact

Multiple stack buffer overflows from fixed-size alloca() allocations in the brick RPC handlers. An authenticated client overflows the brick's stack and gets code execution on the storage server, which owns the data of every tenant on that node.

Who can reach it

Any authenticated gluster client that can mount a volume and send RPCs to a brick.

What to do

Upgrade glusterfs server to the fixed release and restart the brick processes. Confirm the build has stack protector and FORTIFY_SOURCE enabled, and keep brick ports reachable only from known client subnets.

References

This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.