Bug 1040614 - (CVE-2017-9217) VUL-0: CVE-2017-9217: systemd: systemd-resolved through 233 allows remote attackers to cause a denial ofservice (daemon crash) via a crafted DNS response with an empty questionsection.
(CVE-2017-9217)
VUL-0: CVE-2017-9217: systemd: systemd-resolved through 233 allows remote att...
Status: RESOLVED FIXED
Classification: Novell Products
Product: SUSE Security Incidents
Classification: Novell Products
Component: Incidents
unspecified
Other Other
: P5 - None : Normal
: ---
Assigned To: systemd maintainers
Security Team bot
https://smash.suse.de/issue/185855/
:
Depends on:
Blocks:
  Show dependency treegraph
 
Reported: 2017-05-24 14:27 UTC by Marcus Meissner
Modified: 2017-08-03 14:36 UTC (History)
2 users (show)

See Also:
Found By: Security Response Team
Services Priority:
Business Priority:
Blocker: ---
Marketing QA Status: ---
IT Deployment: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Marcus Meissner 2017-05-24 14:27:40 UTC
CVE-2017-9217

systemd-resolved through 233 allows remote attackers to cause a denial of
service (daemon crash) via a crafted DNS response with an empty question
section.

References:
http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2017-9217
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-9217
https://launchpad.net/bugs/1621396
https://github.com/systemd/systemd/pull/5998
Comment 1 Marcus Meissner 2017-05-24 14:31:02 UTC
we are not building resolved in SLES, I think we only have it in factory currently.
Comment 2 Franck Bui 2017-05-24 14:43:38 UTC
It's currently not in Factory either.

Nevertheless I'll merged the fix [1] so we're on the safe side when resolved will be shipped in the future.

[1] https://github.com/systemd/systemd/pull/6020
Comment 3 Franck Bui 2017-05-24 15:00:28 UTC
It looks like v228 is also affected. So I'll fix this version too although resolved is still not enabled on SLE12-SP2+ as well as on Leap 42.2+.

v210 is not since resolved since it was introduced later (v213 I think).
Comment 8 Swamp Workflow Management 2017-07-04 19:16:09 UTC
SUSE-SU-2017:1773-1: An update that solves one vulnerability and has 9 fixes is now available.

Category: security (moderate)
Bug References: 1004995,1029102,1029516,1036873,1038865,1040258,1040614,1040942,1043758,982303
CVE References: CVE-2017-9217
Sources used:
SUSE Linux Enterprise Software Development Kit 12-SP2 (src):    systemd-228-149.3
SUSE Linux Enterprise Server for Raspberry Pi 12-SP2 (src):    systemd-228-149.3
SUSE Linux Enterprise Server 12-SP2 (src):    systemd-228-149.3
SUSE Linux Enterprise Desktop 12-SP2 (src):    systemd-228-149.3
OpenStack Cloud Magnum Orchestration 7 (src):    systemd-228-149.3
Comment 9 Swamp Workflow Management 2017-07-12 16:12:10 UTC
openSUSE-SU-2017:1844-1: An update that solves one vulnerability and has 9 fixes is now available.

Category: security (moderate)
Bug References: 1004995,1029102,1029516,1036873,1038865,1040258,1040614,1040942,1043758,982303
CVE References: CVE-2017-9217
Sources used:
openSUSE Leap 42.2 (src):    systemd-228-25.6.1, systemd-mini-228-25.6.1
Comment 10 Swamp Workflow Management 2017-08-03 13:09:08 UTC
SUSE-SU-2017:2031-1: An update that solves two vulnerabilities and has 17 fixes is now available.

Category: security (moderate)
Bug References: 1004995,1029102,1029516,1032029,1033238,1036873,1037120,1038865,1040153,1040258,1040614,1040942,1040968,1043758,1043900,1045290,1046750,982303,986216
CVE References: CVE-2017-9217,CVE-2017-9445
Sources used:
SUSE Linux Enterprise Software Development Kit 12-SP3 (src):    systemd-228-150.9.3
SUSE Linux Enterprise Server 12-SP3 (src):    systemd-228-150.9.3
SUSE Linux Enterprise Desktop 12-SP3 (src):    systemd-228-150.9.3