| From: |
| Matthew Garrett <mjg59-hpIqsD4AKlfQT0dZR+AlfA-AT-public.gmane.org> |
| To: |
| oss-security-ZwoEplunGu1jrUoiu81ncdBPR1lH4CV8-AT-public.gmane.org |
| Subject: |
| Linux TCP implementation vulnerable to Denial of Service (CVE 2018-5390) |
| Date: |
| Wed, 8 Aug 2018 08:44:28 -0700 |
| Message-ID: |
| <CACdnJuvnc9iwaK6n9T_+PO0CUz9HYErQQ6eY+sJZM_o_h9tfaw@mail.gmail.com> |
| Archive-link: |
| Article |
CVE 2018-5390 is a remotely exploitable denial of service against Linux
systems. It was patched in the public kernel tree on the 2018-07-23 and
publicly disclosed on 2018-08-06. A public tweet linking to the commit was
made on 2018-07-23, so awareness of the issue may have been high before
official disclosure. All Linux distributions should now have released
patches for the affected releases.