Bug#923889: google-compute-image-packages - DoS via serial console write

2019-03-08 Thread Ross Vandegrift
On Fri, Mar 08, 2019 at 10:59:33AM +0100, Bastian Blank wrote: > In normal operation, the rate limit of journald might make sure it does > not come to really blocking. Ahh, that would do it, thanks. > What happens for use cases where you need to disable this rate limit? > Mail servers which

Bug#923889: google-compute-image-packages - DoS via serial console write

2019-03-08 Thread Bastian Blank
On Thu, Mar 07, 2019 at 02:25:12PM -0800, Ross Vandegrift wrote: > On Wed, Mar 06, 2019 at 07:49:38PM +0100, Bastian Blank wrote: > > This package instructs journald to duplicate everything sent to the > > journal to the serial console. The serial console is a pretty rate > > limited log output

Bug#923889: google-compute-image-packages - DoS via serial console write

2019-03-07 Thread Thomas Goirand
On 3/7/19 11:25 PM, Ross Vandegrift wrote: > On Wed, Mar 06, 2019 at 07:49:38PM +0100, Bastian Blank wrote: >> This package instructs journald to duplicate everything sent to the >> journal to the serial console. The serial console is a pretty rate >> limited log output device and blocking there

Bug#923889: google-compute-image-packages - DoS via serial console write

2019-03-07 Thread Ross Vandegrift
On Wed, Mar 06, 2019 at 07:49:38PM +0100, Bastian Blank wrote: > This package instructs journald to duplicate everything sent to the > journal to the serial console. The serial console is a pretty rate > limited log output device and blocking there will make all software with > any log output

Bug#923889: google-compute-image-packages - DoS via serial console write

2019-03-06 Thread Bastian Blank
Package: google-compute-image-packages Version: 20190124-2 Severity: grave This package instructs journald to duplicate everything sent to the journal to the serial console. The serial console is a pretty rate limited log output device and blocking there will make all software with any log