ID:5802 - Exploit for Null pointer dereference in Linux kernel - CVE-2018-5333

 
Main Vulnerability Database Exploits ID:5802 - Exploit for Null pointer dereference in Linux kernel - CVE-2018-5333

ID:5802 - Exploit for Null pointer dereference in Linux kernel - CVE-2018-5333

Published: June 17, 2021


Vulnerability identifier: #VU10001
Vulnerability risk: Medium
CVE-ID: CVE-2018-5333
CWE-ID: CWE-476
Exploitation vector: Remote access
Vulnerable software:
Linux kernel

Link to public exploit:


Vulnerability description

The vulnerability allows a remote attacker to cause DoS condition on the target system.

The weakness exists in the rds_cmsg_atomic function due to insufficient handling of user-supplied input. A remote attacker can send a specially crafted HTTP request, trigger NULL pointer dereference and cause the system to crash.


Remediation

Install update from vendor's website.