CVE-2018-16865

Priority
Description
An allocation of memory without limits, that could result in the stack
clashing with another memory region, was discovered in systemd-journald
when many entries are sent to the journal socket. A local attacker, or a
remote one if systemd-journal-remote is used, may use this flaw to crash
systemd-journald or execute code with journald privileges. Versions through
v240 are vulnerable.
Assigned-to
chrisccoulson
Notes
Package
Upstream:needs-triage
Ubuntu 12.04 ESM (Precise Pangolin):DNE
Ubuntu 14.04 ESM (Trusty Tahr):not-affected (code not built)
Ubuntu 16.04 LTS (Xenial Xerus):released (229-4ubuntu21.15)
Ubuntu 18.04 LTS (Bionic Beaver):released (237-3ubuntu10.11)
More Information

Updated: 2020-03-18 22:51:40 UTC (commit 2ea7df7bd1e69e1e489978d2724a936eb3faa1b8)