#VU14200 Resource exhaustion in Linux kernel - CVE-2018-5390
Published: August 7, 2018 / Updated: August 7, 2018
Linux kernel
Linux Foundation
Description
The vulnerability allows a remote attacker to cause DoS condition on the target system.
The vulnerability exists due to the system uses an inefficient TCP reassembly algorithm. A remote attacker can send specially crafted packets within ongoing TCP sessions to consume excessive CPU resources and cause the service to crash.
Note: The issue has been called "SegmentSmack".