CVE-2018-17336
published 2018-09-22CVE-2018-17336: UDisks 2.8.0 has a format string vulnerability in udisks_log in udiskslogging.c, allowing attackers to obtain sensitive information (stack contents), cause a…
PriorityP432high7.8CVSS 3.0
AVLACLPRLUINSUCHIHAH
EPSS
0.62%
45.8th percentile
UDisks 2.8.0 has a format string vulnerability in udisks_log in udiskslogging.c, allowing attackers to obtain sensitive information (stack contents), cause a denial of service (memory corruption), or possibly have unspecified other impact via a malformed filesystem label, as demonstrated by %d or %n substrings.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| debian | udisks2 | < udisks2 2.8.1-1 (bookworm) | udisks2 2.8.1-1 (bookworm) |
| freedesktop | udisks | — | — |
CVSS provenance
nvdv3.07.8HIGHCVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvdv2.04.6MEDIUMAV:L/AC:L/Au:N/C:P/I:P/A:P
osv7.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
UDisks vulnerability
vendor_ubuntu·2018-09-26
CVE-2018-17336 UDisks vulnerability
Title: UDisks vulnerability
Summary: Udisks could be made to crash or expose sensitive information.
It was discovered that UDisks incorrectly handled format strings when
logging. A local attacker could possibly use this issue to cause a denial
of service or obtain sensitive information.
Instructions: After a standard system update you need to reboot your computer to make
all the necessary changes.
Red Hat
udisks: Format string vulnerability in udisks_log in udiskslogging.c
vendor_redhat·2018-09-22·CVSS 7.8
CVE-2018-17336 [HIGH] CWE-134 udisks: Format string vulnerability in udisks_log in udiskslogging.c
udisks: Format string vulnerability in udisks_log in udiskslogging.c
UDisks 2.8.0 has a format string vulnerability in udisks_log in udiskslogging.c, allowing attackers to obtain sensitive information (stack contents), cause a denial of service (memory corruption), or possibly have unspecified other impact via a malformed filesystem label, as demonstrated by %d or %n substrings.
An uncontrolled format string vulnerability has been discovered in udisks when it mounts a filesystem with a malformed label. A local attacker may use this flaw to leak memory, make the udisks service crash, or cause other unspecified effects.
Package: storaged (Red Hat Ceph Storage 2) - Not affected
Package: udisks (Red Hat Enterprise Linux 6) - Will not fix
Package: udisks2 (Red Hat Enterprise Linux 8) - Not
Debian
CVE-2018-17336: udisks2 - UDisks 2.8.0 has a format string vulnerability in udisks_log in udiskslogging.c,...
vendor_debian·2018·CVSS 7.8
CVE-2018-17336 [HIGH] CVE-2018-17336: udisks2 - UDisks 2.8.0 has a format string vulnerability in udisks_log in udiskslogging.c,...
UDisks 2.8.0 has a format string vulnerability in udisks_log in udiskslogging.c, allowing attackers to obtain sensitive information (stack contents), cause a denial of service (memory corruption), or possibly have unspecified other impact via a malformed filesystem label, as demonstrated by %d or %n substrings.
Scope: local
bookworm: resolved (fixed in 2.8.1-1)
bullseye: resolved (fixed in 2.8.1-1)
forky: resolved (fixed in 2.8.1-1)
sid: resolved (fixed in 2.8.1-1)
trixie: resolved (fixed in 2.8.1-1)
GHSA
GHSA-wc77-2q7w-jfm4: UDisks 2
ghsa_unreviewed·2022-05-14
CVE-2018-17336 [HIGH] CWE-134 GHSA-wc77-2q7w-jfm4: UDisks 2
UDisks 2.8.0 has a format string vulnerability in udisks_log in udiskslogging.c, allowing attackers to obtain sensitive information (stack contents), cause a denial of service (memory corruption), or possibly have unspecified other impact via a malformed filesystem label, as demonstrated by %d or %n substrings.
OSV
CVE-2018-17336: UDisks 2
osv·2018-09-22·CVSS 7.8
CVE-2018-17336 [HIGH] CVE-2018-17336: UDisks 2
UDisks 2.8.0 has a format string vulnerability in udisks_log in udiskslogging.c, allowing attackers to obtain sensitive information (stack contents), cause a denial of service (memory corruption), or possibly have unspecified other impact via a malformed filesystem label, as demonstrated by %d or %n substrings.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2018-17336 udisks: Format string vulnerability in udisks_log in udiskslogging.c
bugzilla·2018-09-25·CVSS 7.8
CVE-2018-17336 [HIGH] CVE-2018-17336 udisks: Format string vulnerability in udisks_log in udiskslogging.c
CVE-2018-17336 udisks: Format string vulnerability in udisks_log in udiskslogging.c
UDisks 2.8.0 has a format string vulnerability in udisks_log in udiskslogging.c, allowing attackers to obtain sensitive information (stack contents), cause a denial of service (memory corruption), or possibly have unspecified other impact via a malformed filesystem label, as demonstrated by %d or %n substrings.
Upstream issue:
https://github.com/storaged-project/udisks/issues/578
Upstream patch:
https://github.com/pothos/udisks/commit/e369a9b4b08e9373c814c05328b366c938284eb5
Discussion:
Created udisks tracking bugs for this issue:
Affects: fedora-all [bug 1632829]
Created udisks2 tracking bugs for this issue:
Affects: fedora-all [bug 1632830]
---
For the attack to be successful, an attacker sho
Bugzilla
CVE-2018-17336 udisks2: udisks: Format string vulnerability in udisks_log in udiskslogging.c [fedora-all]
bugzilla·2018-09-25·CVSS 7.8
CVE-2018-17336 [HIGH] CVE-2018-17336 udisks2: udisks: Format string vulnerability in udisks_log in udiskslogging.c [fedora-all]
CVE-2018-17336 udisks2: udisks: Format string vulnerability in udisks_log in udiskslogging.c [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects
Bugzilla
CVE-2018-17336 udisks: Format string vulnerability in udisks_log in udiskslogging.c [fedora-all]
bugzilla·2018-09-25·CVSS 7.8
CVE-2018-17336 [HIGH] CVE-2018-17336 udisks: Format string vulnerability in udisks_log in udiskslogging.c [fedora-all]
CVE-2018-17336 udisks: Format string vulnerability in udisks_log in udiskslogging.c [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple
2018-09-22
Published