CVE Database
/

CVE-2018-1065

Back to search

CVE-2018-1065

Published: Mar 2, 2018

Modified: Aug 5, 2024

PUBLISHED

Description

The netfilter subsystem in the Linux kernel through 4.15.7 mishandles the case of a rule blob that contains a jump but lacks a user-defined chain, which allows local users to cause a denial of service (NULL pointer dereference) by leveraging the CAP_NET_RAW or CAP_NET_ADMIN capability, related to arpt_do_table in net/ipv4/netfilter/arp_tables.c, ipt_do_table in net/ipv4/netfilter/ip_tables.c, and ip6t_do_table in net/ipv6/netfilter/ip6_tables.c.

VendorProductVersions

n/a

Linux kernel 4.15.0-rc9

affected
Linux kernel 4.15.0-rc9

References

1040446
vdb-entry
x_refsource_SECTRACK
USN-3654-1
vendor-advisory
x_refsource_UBUNTU
DSA-4188
vendor-advisory
x_refsource_DEBIAN
RHSA-2018:2948
vendor-advisory
x_refsource_REDHAT
USN-3654-2
vendor-advisory
x_refsource_UBUNTU
USN-3656-1
vendor-advisory
x_refsource_UBUNTU

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now