In the Linux Kernel before version 4.15.8, 4.14.25, 4.9.87, 4.4.121, 4.1.51, and 3.2.102, an error in the "_sctp_make_chunk()" function (net/sctp/sm_make_chunk.c) when handling SCTP packets length can be exploited to cause a kernel crash.
References
Link Resource
https://access.redhat.com/errata/RHSA-2018:1854 Third Party Advisory
https://access.redhat.com/errata/RHSA-2018:2948 Third Party Advisory
https://access.redhat.com/errata/RHSA-2018:3083 Third Party Advisory
https://access.redhat.com/errata/RHSA-2018:3096 Third Party Advisory
https://access.redhat.com/errata/RHSA-2019:0641 Third Party Advisory
https://cdn.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.2.102 Vendor Advisory
https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.1.51 Vendor Advisory
https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.14.25 Vendor Advisory
https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.15.8 Vendor Advisory
https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.4.121 Vendor Advisory
https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.9.87 Vendor Advisory
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux-stable.git/commit/?id=07f2c7ab6f8d0a7e7c5764c4e6cc9c52951b9d9c Vendor Advisory
https://lists.debian.org/debian-lts-announce/2018/05/msg00000.html Third Party Advisory
https://secuniaresearch.flexerasoftware.com/advisories/81331/ Third Party Advisory
https://secuniaresearch.flexerasoftware.com/secunia_research/2018-2/ Third Party Advisory
https://usn.ubuntu.com/3654-1/ Third Party Advisory
https://usn.ubuntu.com/3654-2/ Third Party Advisory
https://usn.ubuntu.com/3656-1/ Third Party Advisory
https://usn.ubuntu.com/3697-1/ Third Party Advisory
https://usn.ubuntu.com/3697-2/ Third Party Advisory
https://usn.ubuntu.com/3698-1/ Third Party Advisory
https://usn.ubuntu.com/3698-2/ Third Party Advisory
https://www.debian.org/security/2018/dsa-4187 Third Party Advisory
https://www.debian.org/security/2018/dsa-4188 Third Party Advisory
https://www.spinics.net/lists/linux-sctp/msg07036.html Mailing List Third Party Advisory
https://www.spinics.net/lists/netdev/msg482523.html Mailing List Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: flexera

Published: 2018-06-12T16:00:00

Updated: 2019-03-26T10:06:07

Reserved: 2018-01-19T00:00:00


Link: CVE-2018-5803

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2018-06-12T16:29:00.453

Modified: 2019-03-27T16:17:25.307


Link: CVE-2018-5803

JSON object: View

cve-icon Redhat Information

No data.

CWE