CVE-2018-16865

Priority
Description
An allocation of memory without limits, that could result in the stack
clashing with another memory region, was discovered in systemd-journald
when many entries are sent to the journal socket. A local attacker, or a
remote one if systemd-journal-remote is used, may use this flaw to crash
systemd-journald or execute code with journald privileges. Versions through
v240 are vulnerable.
Assigned-to
chrisccoulson
Package
Upstream:needs-triage
Ubuntu 12.04 ESM (Precise Pangolin):DNE
Ubuntu 14.04 LTS (Trusty Tahr):needs-triage
Ubuntu 16.04 LTS (Xenial Xerus):released (229-4ubuntu21.15)
Ubuntu 18.04 LTS (Bionic Beaver):released (237-3ubuntu10.11)
Ubuntu 18.10 (Cosmic Cuttlefish):released (239-7ubuntu10.6)
Ubuntu 19.04 (Disco Dingo):needs-triage
More Information

Updated: 2019-01-16 08:14:27 UTC (commit 2bdac750e0c69a912ea3215899a008d8e9041ddb)