PT-2018-10028 · Linux+3 · Linux Kernel+3

Published

2018-03-02

·

Updated

2023-02-13

·

CVE-2018-1065

CVSS v3.1

4.7

Medium

VectorAV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions through 4.15.7
Description The netfilter subsystem in the Linux kernel mishandles the case of a rule blob that contains a jump but lacks a user-defined chain, which allows local users to cause a denial of service (NULL pointer dereference) by leveraging the CAP NET RAW or CAP NET ADMIN capability. This issue is related to functions such as arpt do table in net/ipv4/netfilter/arp tables.c, ipt do table in net/ipv4/netfilter/ip tables.c, and ip6t do table in net/ipv6/netfilter/ip6 tables.c.
Recommendations For Linux kernel versions through 4.15.7, consider updating to a version that contains a fix for this issue to prevent exploitation. As a temporary workaround, consider restricting the use of the CAP NET RAW or CAP NET ADMIN capability to minimize the risk of denial of service attacks.

Fix

DoS

NULL Pointer Dereference

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2018-1557
ALT-PU-2019-1433
CVE-2018-1065
DSA-4188-1
MGASA-2018-0172
MGASA-2018-0264
MGASA-2018-0265
OPENSUSE-SU-2018_1418-1
RHSA-2018:2948
SUSE-SU-2018:1366-1
SUSE-SU-2018:1816-1
SUSE-SU-2018:1855-1
SUSE-SU-2018:1855-2
USN-3654-1
USN-3654-2
USN-3656-1

Affected Products

Alt Linux
Linux Kernel
Suse
Ubuntu