Related Vulnerabilities: CVE-2021-33910  

Systemd parses the content of /proc/self/mountinfo and each mountpoint is passed to mount_setup_unit(), which calls unit_name_path_escape() underneath. A local attacker who is able to mount a filesystem with a very long path can crash systemd and the whole system.

Severity Medium

Remote No

Type Denial of service

Description

Systemd parses the content of /proc/self/mountinfo and each mountpoint is passed to mount_setup_unit(), which calls unit_name_path_escape() underneath. A local attacker who is able to mount a filesystem with a very long path can crash systemd and the whole system.

AVG-2179 systemd 249-4 Medium Vulnerable

https://bugzilla.redhat.com/show_bug.cgi?id=1970887
https://github.com/systemd/systemd/pull/20256
https://github.com/systemd/systemd/pull/20256/commits/441e0115646d54f080e5c3bb0ba477c892861ab9