|
|
Log in / Subscribe / Register

Linux TCP implementation vulnerable to Denial of Service (CVE 2018-5390)

From:  Matthew Garrett <mjg59-hpIqsD4AKlfQT0dZR+AlfA-AT-public.gmane.org>
To:  oss-security-ZwoEplunGu1jrUoiu81ncdBPR1lH4CV8-AT-public.gmane.org
Subject:  Linux TCP implementation vulnerable to Denial of Service (CVE 2018-5390)
Date:  Wed, 8 Aug 2018 08:44:28 -0700
Message-ID:  <CACdnJuvnc9iwaK6n9T_+PO0CUz9HYErQQ6eY+sJZM_o_h9tfaw@mail.gmail.com>
Archive-link:  Article

CVE 2018-5390 is a remotely exploitable denial of service against Linux
systems. It was patched in the public kernel tree on the 2018-07-23 and
publicly disclosed on 2018-08-06. A public tweet linking to the commit was
made on 2018-07-23, so awareness of the issue may have been high before
official disclosure. All Linux distributions should now have released
patches for the affected releases.


to post comments


Copyright © 2018, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds