CVE-2018-5391
Last modified
CVE-2018-5391 is a high-severity vulnerability rated 7.5/10 on the CVSS scale. The Linux kernel, versions 3.9+, is vulnerable to a denial of service attack with low rates of specially modified packets targeting IP fragment re-assembly. An attacker may cause a denial of service condition by sending specially crafted IP fragments. EPSS estimates a 24.57% chance of exploitation in the next 30 days.
Description
The Linux kernel, versions 3.9+, is vulnerable to a denial of service attack with low rates of specially modified packets targeting IP fragment re-assembly. An attacker may cause a denial of service condition by sending specially crafted IP fragments. Various vulnerabilities in IP fragmentation have been discovered and fixed over the years. The current vulnerability (CVE-2018-5391) became exploitable in the Linux kernel with the increase of the IP fragment reassembly queue size.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Weakness Enumeration
Affected Software
| Vendor | Product | Versions | Update |
|---|---|---|---|
| Linux | Linux Kernel | >= 3.9, <= 4.18 | — |
| Redhat | Enterprise Linux Desktop | 6.0 | — |
| Redhat | Enterprise Linux Desktop | 7.0 | — |
| Redhat | Enterprise Linux Server | 6.0 | — |
| Redhat | Enterprise Linux Server | 7.0 | — |
| Redhat | Enterprise Linux Server Aus | 6.4 | — |
| Redhat | Enterprise Linux Server Aus | 6.5 | — |
| Redhat | Enterprise Linux Server Aus | 6.6 | — |
| Redhat | Enterprise Linux Server Aus | 7.2 | — |
| Redhat | Enterprise Linux Server Aus | 7.3 | — |
| Redhat | Enterprise Linux Server Aus | 7.4 | — |
| Redhat | Enterprise Linux Server Eus | 6.7 | — |
| Redhat | Enterprise Linux Server Eus | 7.3 | — |
| Redhat | Enterprise Linux Server Eus | 7.4 | — |
| Redhat | Enterprise Linux Server Eus | 7.5 | — |
| Redhat | Enterprise Linux Server Tus | 6.6 | — |
| Redhat | Enterprise Linux Server Tus | 7.2 | — |
| Redhat | Enterprise Linux Server Tus | 7.3 | — |
| Redhat | Enterprise Linux Server Tus | 7.4 | — |
| Redhat | Enterprise Linux Workstation | 6.0 | — |
| Redhat | Enterprise Linux Workstation | 7.0 | — |
| Debian | Debian Linux | 8.0 | — |
| Debian | Debian Linux | 9.0 | — |
| Canonical | Ubuntu Linux | 12.04 | — |
| Canonical | Ubuntu Linux | 14.04 | — |
| Canonical | Ubuntu Linux | 16.04 | — |
| Canonical | Ubuntu Linux | 18.04 | — |
| Microsoft | Windows 10 | All versions | — |
| Microsoft | Windows 10 | 1607 | — |
| Microsoft | Windows 10 | 1703 | — |
| Microsoft | Windows 10 | 1709 | — |
| Microsoft | Windows 10 | 1803 | — |
| Microsoft | Windows 7 | All versions | Sp1 |
| Microsoft | Windows 8.1 | All versions | — |
| Microsoft | Windows Rt 8.1 | All versions | — |
| Microsoft | Windows Server 2008 | All versions | Sp2 |
| Microsoft | Windows Server 2008 | r2 | Sp1 |
| Microsoft | Windows Server 2012 | All versions | — |
| Microsoft | Windows Server 2012 | r2 | — |
| Microsoft | Windows Server 2016 | All versions | — |
| Microsoft | Windows Server 2016 | 1709 | — |
| Microsoft | Windows Server 2016 | 1803 | — |
| F5 | Big-Ip Access Policy Manager | >= 11.5.1, < 11.6.5.1 | — |
| F5 | Big-Ip Access Policy Manager | >= 12.1.0, < 12.1.5 | — |
| F5 | Big-Ip Access Policy Manager | >= 13.0.0, < 13.1.3 | — |
| F5 | Big-Ip Access Policy Manager | >= 14.0.0, < 14.0.1.1 | — |
| F5 | Big-Ip Access Policy Manager | >= 14.1.0, < 14.1.2.4 | — |
| F5 | Big-Ip Advanced Firewall Manager | >= 11.5.1, < 11.6.5.1 | — |
| F5 | Big-Ip Advanced Firewall Manager | >= 12.1.0, < 12.1.5 | — |
| F5 | Big-Ip Advanced Firewall Manager | >= 13.0.0, < 13.1.3 | — |
Showing 50 of 129 affected configurations. See NVD for the full list.
References
- http://www.arubanetworks.com/assets/alert/ARUBA-PSA-2018-004.txtThird Party Advisory
- http://www.openwall.com/lists/oss-security/2019/06/28/2Mailing List, Third Party Advisory
- http://www.openwall.com/lists/oss-security/2019/07/06/3Mailing List, Third Party Advisory
- http://www.openwall.com/lists/oss-security/2019/07/06/4Mailing List, Third Party Advisory
- http://www.securityfocus.com/bid/105108Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1041476Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1041637Third Party Advisory, VDB Entry
- https://access.redhat.com/errata/RHSA-2018:2785Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:2791Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:2846Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:2924Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:2925Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:2933Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:2948Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:3083Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:3096Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:3459Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:3540Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:3586Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:3590Third Party Advisory
- https://cert-portal.siemens.com/productcert/pdf/ssa-377115.pdfThird Party Advisory
- https://lists.debian.org/debian-lts-announce/2018/08/msg00014.htmlMailing List, Mitigation, Third Party Advisory
- https://lists.debian.org/debian-lts-announce/2019/03/msg00017.htmlMailing List, Third Party Advisory
- https://security.netapp.com/advisory/ntap-20181003-0002/Third Party Advisory
- https://usn.ubuntu.com/3740-1/Third Party Advisory
- https://usn.ubuntu.com/3740-2/Third Party Advisory
- https://usn.ubuntu.com/3741-1/Third Party Advisory
- https://usn.ubuntu.com/3741-2/Third Party Advisory
- https://usn.ubuntu.com/3742-1/Third Party Advisory
- https://usn.ubuntu.com/3742-2/Third Party Advisory
- https://www.debian.org/security/2018/dsa-4272Mitigation, Third Party Advisory
- https://www.kb.cert.org/vuls/id/641765Third Party Advisory, US Government Resource
- http://www.arubanetworks.com/assets/alert/ARUBA-PSA-2018-004.txtThird Party Advisory
- http://www.openwall.com/lists/oss-security/2019/06/28/2Mailing List, Third Party Advisory
- http://www.openwall.com/lists/oss-security/2019/07/06/3Mailing List, Third Party Advisory
- http://www.openwall.com/lists/oss-security/2019/07/06/4Mailing List, Third Party Advisory
- http://www.securityfocus.com/bid/105108Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1041476Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1041637Third Party Advisory, VDB Entry
- https://access.redhat.com/errata/RHSA-2018:2785Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:2791Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:2846Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:2924Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:2925Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:2933Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:2948Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:3083Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:3096Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:3459Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:3540Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:3586Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:3590Third Party Advisory
- https://cert-portal.siemens.com/productcert/pdf/ssa-377115.pdfThird Party Advisory
- https://lists.debian.org/debian-lts-announce/2018/08/msg00014.htmlMailing List, Mitigation, Third Party Advisory
- https://lists.debian.org/debian-lts-announce/2019/03/msg00017.htmlMailing List, Third Party Advisory
- https://security.netapp.com/advisory/ntap-20181003-0002/Third Party Advisory
- https://usn.ubuntu.com/3740-1/Third Party Advisory
- https://usn.ubuntu.com/3740-2/Third Party Advisory
- https://usn.ubuntu.com/3741-1/Third Party Advisory
- https://usn.ubuntu.com/3741-2/Third Party Advisory
- https://usn.ubuntu.com/3742-1/Third Party Advisory
- https://usn.ubuntu.com/3742-2/Third Party Advisory
- https://www.debian.org/security/2018/dsa-4272Mitigation, Third Party Advisory
- https://www.kb.cert.org/vuls/id/641765Third Party Advisory, US Government Resource
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2018-5391?
How severe is CVE-2018-5391?
How do I fix CVE-2018-5391?
Are you affected by CVE-2018-5391?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
