CVE Database
/

CVE-2018-5391

Back to search

CVE-2018-5391

Published: Sep 6, 2018

Modified: Aug 5, 2024

PUBLISHED

Description

The Linux kernel, versions 3.9+, is vulnerable to a denial of service attack with low rates of specially modified packets targeting IP fragment re-assembly. An attacker may cause a denial of service condition by sending specially crafted IP fragments. Various vulnerabilities in IP fragmentation have been discovered and fixed over the years. The current vulnerability (CVE-2018-5391) became exploitable in the Linux kernel with the increase of the IP fragment reassembly queue size.

VendorProductVersions

Linux

Kernel

affected
3.9 - < 3.9*

Weaknesses (CWE)

References

RHSA-2018:3540
vendor-advisory
x_refsource_REDHAT
RHSA-2018:2785
vendor-advisory
x_refsource_REDHAT
RHSA-2018:3083
vendor-advisory
x_refsource_REDHAT
RHSA-2018:2925
vendor-advisory
x_refsource_REDHAT
VU#641765
third-party-advisory
x_refsource_CERT-VN
USN-3741-2
vendor-advisory
x_refsource_UBUNTU
1041476
vdb-entry
x_refsource_SECTRACK
RHSA-2018:3459
vendor-advisory
x_refsource_REDHAT
RHSA-2018:2933
vendor-advisory
x_refsource_REDHAT
USN-3740-2
vendor-advisory
x_refsource_UBUNTU
USN-3741-1
vendor-advisory
x_refsource_UBUNTU
RHSA-2018:3590
vendor-advisory
x_refsource_REDHAT
RHSA-2018:2948
vendor-advisory
x_refsource_REDHAT
USN-3742-2
vendor-advisory
x_refsource_UBUNTU
USN-3740-1
vendor-advisory
x_refsource_UBUNTU
105108
vdb-entry
x_refsource_BID
USN-3742-1
vendor-advisory
x_refsource_UBUNTU
RHSA-2018:2924
vendor-advisory
x_refsource_REDHAT
DSA-4272
vendor-advisory
x_refsource_DEBIAN
RHSA-2018:3586
vendor-advisory
x_refsource_REDHAT
RHSA-2018:2846
vendor-advisory
x_refsource_REDHAT
1041637
vdb-entry
x_refsource_SECTRACK
RHSA-2018:3096
vendor-advisory
x_refsource_REDHAT
RHSA-2018:2791
vendor-advisory
x_refsource_REDHAT

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now