* SECURITY UPDATE: systemd-tmpfiles could be made to crash.
- d/p/rm-rf-refactor-rm-rf-children-split-out-body-of-directory.patch:
Backport upstream patch from PR#20173
- d/p/rm-rf-optionally-fsync-after-removing-directory-tree.patch:
Backport upstream patch required for CVE-2021-3997 patches
- d/p/CVE-2021-3997-1.patch: Backport upstream patch to refactor
rm_rf_children_inner()
- d/p/CVE-2021-3997-2.patch: Backport upstream patch to refactor
rm_rf()
- d/p/CVE-2021-3997-3.patch: Backport upstream patch to loop over
nested directories instead of using recursion
- CVE-2021-3997
-- Alex Murray <email address hidden> Mon, 10 Jan 2022 15:26:38 +1030
This bug was fixed in the package systemd - 245.4-4ubuntu3.15
---------------
systemd (245.4-4ubuntu3.15) focal-security; urgency=medium
* SECURITY UPDATE: systemd-tmpfiles could be made to crash. rf-refactor- rm-rf-children- split-out- body-of- directory. patch: rf-optionally- fsync-after- removing- directory- tree.patch: 2021-3997- 1.patch: Backport upstream patch to refactor rf_children_ inner() 2021-3997- 2.patch: Backport upstream patch to refactor 2021-3997- 3.patch: Backport upstream patch to loop over
- d/p/rm-
Backport upstream patch from PR#20173
- d/p/rm-
Backport upstream patch required for CVE-2021-3997 patches
- d/p/CVE-
rm_
- d/p/CVE-
rm_rf()
- d/p/CVE-
nested directories instead of using recursion
- CVE-2021-3997
-- Alex Murray <email address hidden> Mon, 10 Jan 2022 15:26:38 +1030