#VU14437 Improper input validation in Linux kernel - CVE-2018-5391
Published: August 15, 2018 / Updated: August 16, 2018
Linux kernel
Linux Foundation
Description
The vulnerability allows a remote attacker to cause DoS condition on the target system.
The vulnerability exists due to an error when handling reassembly of fragmented IPv4 and IPv6 packets. A remote attacker can send specially crafted packets, trigger time and calculation expensive fragment reassembly algorithms and cause the service to crash.