ELA-511-1 udisks2 security update

denial of service via system crash

2021-11-05
Packageudisks2
Version2.1.3-5+deb8u1
Related CVEs CVE-2021-3802


Stefan Walter found that udisks2, a service to access and manipulate storage devices, could cause denial of service via system crash if a corrupted or specially crafted ext2/3/4 device or image was mounted, which could happen automatically on certain environments.



For Debian 8 jessie, these problems have been fixed in version 2.1.3-5+deb8u1.

We recommend that you upgrade your udisks2 packages.

Further information about Extended LTS security advisories can be found in the dedicated section of our website.