MGASA-2015-0145
Dashboard / Vulnerabilities / MGASA-2015-0145
Summary: Updated glusterfs packages fix security vulnerabilities
Details: Updated glusterfs packages fix security vulnerability: glusterfs was vulnerable to a fragment header infinite loop denial of service attack (CVE-2014-3619). Also, the glusterfsd SysV init script was failing to properly start the service. This was fixed by replacing it with systemd unit files for the service that work properly (mga#14049).
References: https://advisories.mageia.org/MGASA-2015-0145.html, https://bugs.mageia.org/show_bug.cgi?id=15473, http://lists.opensuse.org/opensuse-updates/2015-03/msg00031.html, https://bugs.mageia.org/show_bug.cgi?id=14049
Affected packages
Package
Name: glusterfs
Purl: pkg:rpm/mageia/glusterfs?arch=source&distro=mageia-4
Affected ranges
Type: ECOSYSTEM
Events:
