In the tun subsystem in the Linux kernel before 4.13.14, devgetvalidname is not called before registernetdevice. This allows local users to cause a denial of service (NULL pointer dereference and panic) via an ioctl(TUNSETIFF) call with a dev name containing a / character. This is similar to CVE-2013-4343.
{ "binaries": [ { "binary_version": "4.4.0-1086.94", "binary_name": "linux-headers-4.4.0-1086-raspi2" }, { "binary_version": "4.4.0-1086.94", "binary_name": "linux-image-4.4.0-1086-raspi2" }, { "binary_version": "4.4.0-1086.94", "binary_name": "linux-image-4.4.0-1086-raspi2-dbgsym" }, { "binary_version": "4.4.0-1086.94", "binary_name": "linux-raspi2-headers-4.4.0-1086" }, { "binary_version": "4.4.0-1086.94", "binary_name": "linux-raspi2-tools-4.4.0-1086" }, { "binary_version": "4.4.0-1086.94", "binary_name": "linux-raspi2-tools-4.4.0-1086-dbgsym" }, { "binary_version": "4.4.0-1086.94", "binary_name": "linux-tools-4.4.0-1086-raspi2" } ], "availability": "No subscription required" }
{ "binaries": [ { "binary_version": "4.4.0-1088.93", "binary_name": "linux-headers-4.4.0-1088-snapdragon" }, { "binary_version": "4.4.0-1088.93", "binary_name": "linux-image-4.4.0-1088-snapdragon" }, { "binary_version": "4.4.0-1088.93", "binary_name": "linux-image-4.4.0-1088-snapdragon-dbgsym" }, { "binary_version": "4.4.0-1088.93", "binary_name": "linux-snapdragon-headers-4.4.0-1088" }, { "binary_version": "4.4.0-1088.93", "binary_name": "linux-snapdragon-tools-4.4.0-1088" }, { "binary_version": "4.4.0-1088.93", "binary_name": "linux-snapdragon-tools-4.4.0-1088-dbgsym" }, { "binary_version": "4.4.0-1088.93", "binary_name": "linux-tools-4.4.0-1088-snapdragon" } ], "availability": "No subscription required" }
{ "binaries": [ { "binary_version": "4.15.0-1053.57", "binary_name": "linux-buildinfo-4.15.0-1053-snapdragon" }, { "binary_version": "4.15.0-1053.57", "binary_name": "linux-headers-4.15.0-1053-snapdragon" }, { "binary_version": "4.15.0-1053.57", "binary_name": "linux-image-4.15.0-1053-snapdragon" }, { "binary_version": "4.15.0-1053.57", "binary_name": "linux-image-4.15.0-1053-snapdragon-dbgsym" }, { "binary_version": "4.15.0-1053.57", "binary_name": "linux-modules-4.15.0-1053-snapdragon" }, { "binary_version": "4.15.0-1053.57", "binary_name": "linux-snapdragon-headers-4.15.0-1053" }, { "binary_version": "4.15.0-1053.57", "binary_name": "linux-snapdragon-tools-4.15.0-1053" }, { "binary_version": "4.15.0-1053.57", "binary_name": "linux-tools-4.15.0-1053-snapdragon" } ], "availability": "No subscription required" }