PT-2018-2758 · Linux+5 · Linux Kernel+5

Vincent Pelletier

·

Published

2018-09-24

·

Updated

2023-02-14

·

CVE-2018-14633

CVSS v2.0

8.3

High

VectorAV:N/AC:M/Au:N/C:P/I:P/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel versions 3.10.x through 4.18.x
Description The issue is related to the chap server compute md5() function in the ISCSI target code of the Linux kernel, which incorrectly checks memory access boundaries, leading to a buffer overflow. This can be exploited by an unauthenticated remote attacker to cause a denial-of-service or potentially gain access to protected information. The attack requires the iSCSI target to be enabled on the victim host. Depending on the compiler, compile flags, and hardware architecture used to build the target's code, the attack may lead to a system crash or possibly unauthorized access to data exported by the iSCSI target.
Recommendations For Linux kernel versions 3.10.x, consider disabling the iSCSI target until a patch is available. For Linux kernel versions 4.14.x, restrict access to the vulnerable chap server compute md5() function to minimize the risk of exploitation. For Linux kernel versions 4.18.x, avoid using the ISCSI target feature until the issue is resolved. As a temporary workaround, consider disabling the ISCSI target feature on all vulnerable versions until a patch is available.

Fix

DoS

Stack Overflow

Buffer Overflow

Memory Corruption

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2018-2408
ALT-PU-2018-2412
ALT-PU-2018-2420
ALT-PU-2018-2502
BDU:2019-01738
CESA-2018_3651
CVE-2018-14633
DLA-1529-1
DLA-1531-1
DSA-4308-1
MGASA-2018-0417
MGASA-2018-0418
MGASA-2018-0419
OPENSUSE-SU-2018_3071-1
OPENSUSE-SU-2018_3202-1
RHSA-2018:3651
RHSA-2018:3666
RHSA-2018_3651
RHSA-2018_3666
RHSA-2019:1946
SUSE-SU-2018:3158-1
SUSE-SU-2018:3159-1
SUSE-SU-2018:3164-1
SUSE-SU-2018:3171-1
SUSE-SU-2018:3172-1
SUSE-SU-2018:3173-1
SUSE-SU-2018:3238-1
SUSE-SU-2018:3265-1
SUSE-SU-2018:3268-1
SUSE-SU-2018:3272-1
SUSE-SU-2018:3328-1
SUSE-SU-2018:3331-1
SUSE-SU-2018:3470-1
SUSE-SU-2018:3618-1
SUSE-SU-2018:3659-1
SUSE-SU-2018:3688-1
SUSE-SU-2018:3689-1
SUSE-SU-2018:3746-1
SUSE-SU-2018:3773-1
SUSE-SU-2018:3789-1
SUSE-SU-2018:3867-1
SUSE-SU-2018:3869-1
SUSE-SU-2018:3961-1
SUSE-SU-2018_3265-1
SUSE-SU-2018_3328-1
SUSE-SU-2018_3470-1
SUSE-SU-2018_3689-1
SUSE-SU-2018_3789-1
SUSE-SU-2019:0095-1
SUSE-SU-2019:0828-1
SUSE-SU-2019:1289-1
SUSE-SU-2019_0828-1
USN-3775-1
USN-3775-2
USN-3776-1
USN-3776-2
USN-3777-1
USN-3777-2
USN-3777-3
USN-3779-1

Affected Products

Alt Linux
Centos
Linux Kernel
Red Hat
Suse
Ubuntu