It was found that an attacker could issue a xattr request via glusterfs FUSE to cause gluster brick process to crash which will result in a remote denial of service. If gluster multiplexing is enabled this will result in a crash of multiple bricks and gluster volumes.
A NULL pointer dereference occurs when the application dereferences a pointer that it expects to be valid, but is NULL, typically causing a crash or exit.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Glusterfs | Gluster | 3.12.0 (including) | 3.12.14 (excluding) |
Glusterfs | Gluster | 4.1.0 (including) | 4.1.8 (excluding) |