← Back

CVE-2018-5391

nvd nist
Published: Sep 6, 2018Modified: Nov 21, 2024

JSON object

Loading...
7.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Exploitability: 3.9 / Impact: 3.6
Source: NVD

Description

The Linux kernel, versions 3.9+, is vulnerable to a denial of service attack with low rates of specially modified packets targeting IP fragment re-assembly. An attacker may cause a denial of service condition by sending specially crafted IP fragments. Various vulnerabilities in IP fragmentation have been discovered and fixed over the years. The current vulnerability (CVE-2018-5391) became exploitable in the Linux kernel with the increase of the IP fragment reassembly queue size.

Affected (130)

Show all products
1 product
Linux Kernel
6 products
Enterprise Linux Desktop
Enterprise Linux Server
Enterprise Linux Server Aus
Enterprise Linux Server Eus
Enterprise Linux Server Tus
Enterprise Linux Workstation
1 product
Debian Linux
1 product
Ubuntu Linux
7 products
Windows 10
Windows 7
Windows 8.1
Windows Rt 8.1
Windows Server 2008
Windows Server 2012
Windows Server 2016
13 products
Big Ip Access Policy Manager
Big Ip Advanced Firewall Manager
Big Ip Analytics
Big Ip Domain Name System
Big Ip Edge Gateway
Big Ip Fraud Protection Service
Big Ip Global Traffic Manager
Big Ip Link Controller
Big Ip Local Traffic Manager
Big Ip Policy Enforcement Manager
Big Ip Webaccelerator
22 products
Ruggedcom Rm1224 Firmware
Ruggedcom Rox Ii Firmware
Scalance M 800 Firmware
Scalance S615 Firmware
Scalance Sc 600 Firmware
Simatic Net Cp 1242 7 Firmware
Simatic Net Cp 1243 1 Firmware
Simatic Net Cp 1542sp 1 Firmware
Simatic Net Cp 1543 1 Firmware
Simatic Net Cp 1543sp 1 Firmware
Simatic Rf185c Firmware
Simatic Rf186c Firmware
Simatic Rf186ci Firmware
Simatic Rf188 Firmware
Simatic Rf188ci Firmware
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
From 3.9 to 4.18
Configuration B
20 vulnerable
Configuration C
2 vulnerable
Vulnerable SoftwareAffected Versions
Debian
Version 8.0
Version 9.0
Configuration D
4 vulnerable
Vulnerable SoftwareAffected Versions
Canonical
Version 12.04
Version 14.04
Version 16.04
Version 18.04
Configuration E
16 vulnerable
Vulnerable SoftwareAffected Versions
Microsoft
All versions
Version 1607
Version 1703
Version 1709
Version 1803
All versions
All versions
All versions
Microsoft
All versions
Version r2 sp1
Version r2 sp1
Microsoft
All versions
Version r2
Microsoft
All versions
Version 1709
Version 1803
Configuration F
65 vulnerable
Vulnerable SoftwareAffected Versions
F5
From 11.5.1 to 11.6.5.1
From 12.1.0 to 12.1.5
From 13.0.0 to 13.1.3
From 14.0.0 to 14.0.1.1
From 14.1.0 to 14.1.2.4
F5
From 11.5.1 to 11.6.5.1
From 12.1.0 to 12.1.5
From 13.0.0 to 13.1.3
From 14.0.0 to 14.0.1.1
From 14.1.0 to 14.1.2.4
F5
From 11.5.1 to 11.6.5.1
From 12.1.0 to 12.1.5
From 13.0.0 to 13.1.3
From 14.0.0 to 14.0.1.1
From 14.1.0 to 14.1.2.4
F5
From 11.5.1 to 11.6.5.1
From 12.1.0 to 12.1.5
From 13.0.0 to 13.1.3
From 14.0.0 to 14.0.1.1
From 14.1.0 to 14.1.2.4
F5
From 11.5.1 to 11.6.5.1
From 12.1.0 to 12.1.5
From 13.0.0 to 13.1.3
From 14.0.0 to 14.0.1.1
From 14.1.0 to 14.1.2.4
F5
From 11.5.1 to 11.6.5.1
From 12.1.0 to 12.1.5
From 13.0.0 to 13.1.3
From 14.0.0 to 14.0.1.1
From 14.1.0 to 14.1.2.4
F5
From 11.5.1 to 11.6.5.1
From 12.1.0 to 12.1.5
From 13.0.0 to 13.1.3
From 14.0.0 to 14.0.1.1
From 14.1.0 to 14.1.2.4
F5
From 11.5.1 to 11.6.5.1
From 12.1.0 to 12.1.5
From 13.0.0 to 13.1.3
From 14.0.0 to 14.0.1.1
From 14.1.0 to 14.1.2.4
F5
From 11.5.1 to 11.6.5.1
From 12.1.0 to 12.1.5
From 13.0.0 to 13.1.3
From 14.0.0 to 14.0.1.1
From 14.1.0 to 14.1.2.4
F5
From 11.5.1 to 11.6.5.1
From 12.1.0 to 12.1.5
From 13.0.0 to 13.1.3
From 14.0.0 to 14.0.1.1
From 14.1.0 to 14.1.2.4
F5
From 11.5.1 to 11.6.5.1
From 12.1.0 to 12.1.5
From 13.0.0 to 13.1.3
From 14.0.0 to 14.0.1.1
From 14.1.0 to 14.1.2.4
F5
From 11.5.1 to 11.6.5.1
From 12.1.0 to 12.1.5
From 13.0.0 to 13.1.3
From 14.0.0 to 14.0.1.1
From 14.1.0 to 14.1.2.4
F5
From 11.5.1 to 11.6.5.1
From 12.1.0 to 12.1.5
From 13.0.0 to 13.1.3
From 14.0.0 to 14.0.1.1
From 14.1.0 to 14.1.2.4
Configuration G
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 6.1
Running on/withPlatform Versions
Siemens
Ruggedcom Rm1224
All versions
Configuration H
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 2.13.3
Running on/withPlatform Versions
Siemens
Ruggedcom Rox Ii
All versions
Configuration I
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 6.1
Running on/withPlatform Versions
Siemens
Scalance M 800
All versions
Configuration J
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 6.1
Running on/withPlatform Versions
Siemens
Scalance S615
All versions
Configuration K
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 2.0
Running on/withPlatform Versions
Siemens
Scalance Sc 600
All versions
Configuration L
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 2.0
Running on/withPlatform Versions
Siemens
Scalance W1700 Ieee 802.11ac
All versions
Configuration M
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 6.4
Running on/withPlatform Versions
Siemens
Scalance W700 Ieee 802.11a/b/g/n
All versions
Configuration N
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 3.2
Running on/withPlatform Versions
Siemens
Simatic Net Cp 1242 7
All versions
Configuration O
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 3.2
Running on/withPlatform Versions
Siemens
Simatic Net Cp 1243 1
All versions
Configuration P
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 3.2
Running on/withPlatform Versions
Siemens
Simatic Net Cp 1243 7 Lte Eu
All versions
Configuration Q
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 3.2
Running on/withPlatform Versions
Siemens
Simatic Net Cp 1243 7 Lte Us
All versions
Configuration R
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 3.2
Running on/withPlatform Versions
Siemens
Simatic Net Cp 1243 8 Irc
All versions
Configuration S
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 2.1
Running on/withPlatform Versions
Siemens
Simatic Net Cp 1542sp 1
All versions
Configuration T
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 2.1
Running on/withPlatform Versions
Siemens
Simatic Net Cp 1542sp 1 Irc
All versions
Configuration U
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 2.2
Running on/withPlatform Versions
Siemens
Simatic Net Cp 1543 1
All versions
Configuration V
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 2.1
Running on/withPlatform Versions
Siemens
Simatic Net Cp 1543sp 1
All versions
Configuration W
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 1.3
Running on/withPlatform Versions
Siemens
Simatic Rf185c
All versions
Configuration X
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 1.3
Running on/withPlatform Versions
Siemens
Simatic Rf186c
All versions
Configuration Y
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 1.3
Running on/withPlatform Versions
Siemens
Simatic Rf186ci
All versions
Configuration Z
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 1.3
Running on/withPlatform Versions
Siemens
Simatic Rf188
All versions
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 1.3
Running on/withPlatform Versions
Siemens
Simatic Rf188ci
All versions
Configuration B
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
From 1.1 to 2.0.1
Running on/withPlatform Versions
Siemens
Sinema Remote Connect Server
All versions

References (70)

Source: cret@cert.org
Mailing ListThird Party Advisory
Source: cret@cert.org
Mailing ListThird Party Advisory
Source: cret@cert.org
Mailing ListThird Party Advisory
Source: cret@cert.org
Third Party AdvisoryVDB Entry
Source: cret@cert.org
Third Party AdvisoryVDB Entry
Source: cret@cert.org
Third Party AdvisoryVDB Entry
Source: cret@cert.org
Third Party Advisory
Source: cret@cert.org
Third Party Advisory
Source: cret@cert.org
Third Party Advisory
Source: cret@cert.org
Third Party Advisory
Source: cret@cert.org
Third Party Advisory
Source: cret@cert.org
Third Party Advisory
Source: cret@cert.org
Third Party Advisory
Source: cret@cert.org
Third Party Advisory
Source: cret@cert.org
Third Party Advisory
Source: cret@cert.org
Third Party Advisory
Source: cret@cert.org
Third Party Advisory
Source: cret@cert.org
Third Party Advisory
Source: cret@cert.org
Third Party Advisory
Source: cret@cert.org
Mailing ListMitigationThird Party Advisory
Source: cret@cert.org
Mailing ListThird Party Advisory
Source: cret@cert.org
Third Party Advisory
Source: cret@cert.org
Third Party Advisory
Source: cret@cert.org
Third Party Advisory
Source: cret@cert.org
Third Party Advisory
Source: cret@cert.org
Third Party Advisory
Source: cret@cert.org
Third Party Advisory
Source: cret@cert.org
Third Party Advisory
Source: cret@cert.org
MitigationThird Party Advisory
Source: cret@cert.org
Third Party AdvisoryUS Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListMitigationThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
MitigationThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryUS Government Resource

Timeline

No history available yet.