CVE-2018-1049: Canonical Ubuntu Linux
Medium severity, CVSS 5.9. EPSS: 7.4% chance of exploitation in the next 30 days.
In systemd prior to 234 a race condition exists between .mount and .automount units such that automount requests from kernel may not be serviced by systemd resulting in kernel holding the mountpoint and any processes that try to use said mount will hang. A race condition like this may lead to denial of service, until mount points are unmounted.
Affected products
- Canonical Ubuntu Linux: version 14.04 only; version 16.04 only
- Debian Debian Linux: version 8.0 only
- Red Hat Enterprise Linux: version 7.0 only
- Red Hat Enterprise Linux Aus: version 7.4 only; version 7.6 only
- Red Hat Enterprise Linux Desktop: version 7.0 only
- Red Hat Enterprise Linux Server: version 7.0 only
- Red Hat Enterprise Linux Server Aus: version 7.4 only; version 7.6 only
- Red Hat Enterprise Linux Server Eus: version 7.4 only; version 7.5 only; version 7.6 only
- Red Hat Enterprise Linux Server Tus: version 7.4 only; version 7.6 only
- Red Hat Enterprise Linux Workstation: version 7.0 only
- Systemd Project Systemd: before 234 (fixed in 234)
Published 2018-02-16. Last modified 2026-06-17.