A security flaw was found in the ipfragreasm() function in net/ipv4/ipfragment.c in the Linux kernel from 4.19-rc1 to 4.19-rc3 inclusive, which can cause a later system crash in ipdo_fragment(). With certain non-default, but non-rare, configuration of a victim host, an attacker can trigger this crash remotely, thus leading to a remote denial-of-service.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2018-14641.json"
[
{
"signature_type": "Line",
"signature_version": "v1",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@5d407b071dc369c26a38398326ee2be53651cfe4",
"digest": {
"line_hashes": [
"131262635441694751021375000488517933248",
"24030918561731519973851819374192816371",
"63304610112658508359554728251865616412",
"182276261238966657707958544718761349843"
],
"threshold": 0.9
},
"id": "CVE-2018-14641-0d6ade8d",
"deprecated": false,
"target": {
"file": "net/ipv6/netfilter/nf_conntrack_reasm.c"
}
},
{
"signature_type": "Function",
"signature_version": "v1",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@5d407b071dc369c26a38398326ee2be53651cfe4",
"digest": {
"function_hash": "232142149482806608568557257088493185224",
"length": 2817.0
},
"id": "CVE-2018-14641-342bd34c",
"deprecated": false,
"target": {
"file": "net/ipv6/netfilter/nf_conntrack_reasm.c",
"function": "nf_ct_frag6_reasm"
}
},
{
"signature_type": "Function",
"signature_version": "v1",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@5d407b071dc369c26a38398326ee2be53651cfe4",
"digest": {
"function_hash": "155684060953758293378779230602483877939",
"length": 3739.0
},
"id": "CVE-2018-14641-cefe317a",
"deprecated": false,
"target": {
"file": "net/ipv4/ip_fragment.c",
"function": "ip_frag_reasm"
}
},
{
"signature_type": "Line",
"signature_version": "v1",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@5d407b071dc369c26a38398326ee2be53651cfe4",
"digest": {
"line_hashes": [
"311739422831592872462049782869768263353",
"331006415618776127778663051708201281647",
"155478770685504274345757928385997961056",
"62519758527365224640998791739610945592"
],
"threshold": 0.9
},
"id": "CVE-2018-14641-e339d8ef",
"deprecated": false,
"target": {
"file": "net/ipv4/ip_fragment.c"
}
}
]