Vulnerability CVE-2019-3844: Information

Description

It was discovered that a systemd service that uses DynamicUser property can get new privileges through the execution of SUID binaries, which would allow to create binaries owned by the service transient group with the setgid bit set. A local attacker may use this flaw to access resources that will be owned by a potentially different service in the future, when the GID will be recycled.

Severity: HIGH (7.8) Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Published: April 27, 2019
Modified: Nov. 7, 2023
Error type identifier: CWE-268

Fixed packages

Package name
Branch
Fixed in version
Version from repository
Errata ID
Task #
State
systemdsisyphus242-alt1254.10-alt2ALT-PU-2019-1690-1227234Fixed
systemdp10242-alt1249.17-alt2ALT-PU-2019-1690-1227234Fixed
systemdp9242-alt1247.13-alt1ALT-PU-2019-1690-1227234Fixed
systemdp8239-alt5239-alt6ALT-PU-2020-1403-1246796Fixed
systemdc10f1242-alt1249.17-alt2ALT-PU-2019-1690-1227234Fixed
systemdc9f2242-alt1246.14-alt1ALT-PU-2019-1690-1227234Fixed

References to Advisories, Solutions, and Tools

    1. Configuration 1

      cpe:2.3:a:systemd_project:systemd:*:*:*:*:*:*:*:*
      End excliding
      242

      Configuration 2

      cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*

      cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:*

      cpe:2.3:o:canonical:ubuntu_linux:19.10:*:*:*:*:*:*:*

      Configuration 3

      cpe:2.3:a:netapp:solidfire:-:*:*:*:*:*:*:*

      cpe:2.3:a:netapp:hci_management_node:-:*:*:*:*:*:*:*

      cpe:2.3:a:netapp:snapprotect:-:*:*:*:*:*:*:*

      Configuration 4

      cpe:2.3:o:netapp:cn1610_firmware:-:*:*:*:*:*:*:*

      Running on/with:
      cpe:2.3:h:netapp:cn1610:-:*:*:*:*:*:*:*