The Linux kernel, versions 3.9+, is vulnerable to a denial of service attack with low rates of specially modified packets targeting IP fragment re-assembly. An attacker may cause a denial of service condition by sending specially crafted IP fragments. Various vulnerabilities in IP fragmentation have been discovered and fixed over the years. The current vulnerability (CVE-2018-5391) became exploitable in the Linux kernel with the increase of the IP fragment reassembly queue size.
Project Subscriptions
| Vendors | Products |
|---|---|
|
Canonical
Subscribe
|
Ubuntu Linux
Subscribe
|
|
Debian
Subscribe
|
Debian Linux
Subscribe
|
|
F5
Subscribe
|
Big-ip Access Policy Manager
Subscribe
Big-ip Advanced Firewall Manager
Subscribe
Big-ip Analytics
Subscribe
Big-ip Application Acceleration Manager
Subscribe
Big-ip Application Security Manager
Subscribe
Big-ip Domain Name System
Subscribe
Big-ip Edge Gateway
Subscribe
Big-ip Fraud Protection Service
Subscribe
Big-ip Global Traffic Manager
Subscribe
Big-ip Link Controller
Subscribe
Big-ip Local Traffic Manager
Subscribe
Big-ip Policy Enforcement Manager
Subscribe
Big-ip Webaccelerator
Subscribe
|
|
Linux
Subscribe
|
Linux Kernel
Subscribe
|
|
Microsoft
Subscribe
|
|
|
Redhat
Subscribe
|
Enterprise Linux
Subscribe
Enterprise Linux Desktop
Subscribe
Enterprise Linux Server
Subscribe
Enterprise Linux Server Aus
Subscribe
Enterprise Linux Server Eus
Subscribe
Enterprise Linux Server Tus
Subscribe
Enterprise Linux Workstation
Subscribe
Enterprise Mrg
Subscribe
Rhel Aus
Subscribe
Rhel E4s
Subscribe
Rhel Eus
Subscribe
Rhel Extras Rt
Subscribe
Rhel Tus
Subscribe
|
|
Siemens
Subscribe
|
Ruggedcom Rm1224
Subscribe
Ruggedcom Rm1224 Firmware
Subscribe
Ruggedcom Rox Ii
Subscribe
Ruggedcom Rox Ii Firmware
Subscribe
Scalance M-800
Subscribe
Scalance M-800 Firmware
Subscribe
Scalance S615
Subscribe
Scalance S615 Firmware
Subscribe
Scalance Sc-600
Subscribe
Scalance Sc-600 Firmware
Subscribe
Scalance W1700 Ieee 802.11ac
Subscribe
Scalance W1700 Ieee 802.11ac Firmware
Subscribe
Scalance W700 Ieee 802.11a\/b\/g\/n
Subscribe
Scalance W700 Ieee 802.11a\/b\/g\/n Firmware
Subscribe
Simatic Net Cp 1242-7
Subscribe
Simatic Net Cp 1242-7 Firmware
Subscribe
Simatic Net Cp 1243-1
Subscribe
Simatic Net Cp 1243-1 Firmware
Subscribe
Simatic Net Cp 1243-7 Lte Eu
Subscribe
Simatic Net Cp 1243-7 Lte Eu Firmware
Subscribe
Simatic Net Cp 1243-7 Lte Us
Subscribe
Simatic Net Cp 1243-7 Lte Us Firmware
Subscribe
Simatic Net Cp 1243-8 Irc
Subscribe
Simatic Net Cp 1243-8 Irc Firmware
Subscribe
Simatic Net Cp 1542sp-1
Subscribe
Simatic Net Cp 1542sp-1 Firmware
Subscribe
Simatic Net Cp 1542sp-1 Irc
Subscribe
Simatic Net Cp 1542sp-1 Irc Firmware
Subscribe
Simatic Net Cp 1543-1
Subscribe
Simatic Net Cp 1543-1 Firmware
Subscribe
Simatic Net Cp 1543sp-1
Subscribe
Simatic Net Cp 1543sp-1 Firmware
Subscribe
Simatic Rf185c
Subscribe
Simatic Rf185c Firmware
Subscribe
Simatic Rf186c
Subscribe
Simatic Rf186c Firmware
Subscribe
Simatic Rf186ci
Subscribe
Simatic Rf186ci Firmware
Subscribe
Simatic Rf188
Subscribe
Simatic Rf188 Firmware
Subscribe
Simatic Rf188ci
Subscribe
Simatic Rf188ci Firmware
Subscribe
Sinema Remote Connect Server
Subscribe
Sinema Remote Connect Server Firmware
Subscribe
|
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-1466-1 | linux-4.9 security update |
Debian DLA |
DLA-1715-1 | linux-4.9 security update |
Debian DSA |
DSA-4272-1 | linux security update |
EUVD |
EUVD-2018-17161 | The Linux kernel, versions 3.9+, is vulnerable to a denial of service attack with low rates of specially modified packets targeting IP fragment re-assembly. An attacker may cause a denial of service condition by sending specially crafted IP fragments. Various vulnerabilities in IP fragmentation have been discovered and fixed over the years. The current vulnerability (CVE-2018-5391) became exploitable in the Linux kernel with the increase of the IP fragment reassembly queue size. |
Ubuntu USN |
USN-3740-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-3740-2 | Linux kernel (HWE) vulnerabilities |
Ubuntu USN |
USN-3741-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-3741-2 | Linux kernel (Xenial HWE) vulnerabilities |
Ubuntu USN |
USN-3742-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-3742-2 | Linux kernel (Trusty HWE) vulnerabilities |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 15 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: certcc
Published:
Updated: 2024-08-05T05:33:44.368Z
Reserved: 2018-01-12T00:00:00.000Z
Link: CVE-2018-5391
No data.
Status : Modified
Published: 2018-09-06T21:29:00.363
Modified: 2024-11-21T04:08:43.897
Link: CVE-2018-5391
OpenCVE Enrichment
No data.
Debian DLA
Debian DSA
EUVD
Ubuntu USN