CVE-2017-18218
published 2018-03-05CVE-2017-18218: In drivers/net/ethernet/hisilicon/hns/hns_enet.c in the Linux kernel before 4.13, local users can cause a denial of service (use-after-free and BUG) or…
PriorityP434high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.38%
30.7th percentile
In drivers/net/ethernet/hisilicon/hns/hns_enet.c in the Linux kernel before 4.13, local users can cause a denial of service (use-after-free and BUG) or possibly have unspecified other impact by leveraging differences in skb handling between hns_nic_net_xmit_hw and hns_nic_net_xmit.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 4.13.4-1 (bookworm) | linux 4.13.4-1 (bookworm) |
| linux | linux_kernel | >= 0 < 4.13.4-1 | 4.13.4-1 |
| linux | linux_kernel | >= 0 < 4.13.4-1 | 4.13.4-1 |
| linux | linux_kernel | >= 0 < 4.13.4-1 | 4.13.4-1 |
| linux | linux_kernel | >= 0 < 4.13.4-1 | 4.13.4-1 |
| linux | linux_kernel | >= 4.10 < 4.13 | 4.13 |
| linux | linux_kernel | >= 4.5 < 4.9.92 | 4.9.92 |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.2HIGHAV:L/AC:L/Au:N/C:C/I:C/A:C
osv7.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-54jr-vfww-vxf7: In drivers/net/ethernet/hisilicon/hns/hns_enet
ghsa_unreviewed·2022-05-14
CVE-2017-18218 [HIGH] CWE-416 GHSA-54jr-vfww-vxf7: In drivers/net/ethernet/hisilicon/hns/hns_enet
In drivers/net/ethernet/hisilicon/hns/hns_enet.c in the Linux kernel before 4.13, local users can cause a denial of service (use-after-free and BUG) or possibly have unspecified other impact by leveraging differences in skb handling between hns_nic_net_xmit_hw and hns_nic_net_xmit.
OSV
CVE-2017-18218: In drivers/net/ethernet/hisilicon/hns/hns_enet
osv·2018-03-05·CVSS 7.8
CVE-2017-18218 [HIGH] CVE-2017-18218: In drivers/net/ethernet/hisilicon/hns/hns_enet
In drivers/net/ethernet/hisilicon/hns/hns_enet.c in the Linux kernel before 4.13, local users can cause a denial of service (use-after-free and BUG) or possibly have unspecified other impact by leveraging differences in skb handling between hns_nic_net_xmit_hw and hns_nic_net_xmit.
Red Hat
kernel: Use-after-free vulnerability in drivers/net/ethernet/hisilicon/hns/hns_enet.c allows local attacker to cause denial of service
vendor_redhat·2017-07-06·CVSS 7.8
CVE-2017-18218 [HIGH] CWE-416 kernel: Use-after-free vulnerability in drivers/net/ethernet/hisilicon/hns/hns_enet.c allows local attacker to cause denial of service
kernel: Use-after-free vulnerability in drivers/net/ethernet/hisilicon/hns/hns_enet.c allows local attacker to cause denial of service
In drivers/net/ethernet/hisilicon/hns/hns_enet.c in the Linux kernel before 4.13, local users can cause a denial of service (use-after-free and BUG) or possibly have unspecified other impact by leveraging differences in skb handling between hns_nic_net_xmit_hw and hns_nic_net_xmit.
In drivers/net/ethernet/hisilicon/hns/hns_enet.c in the Linux kernel, before 4.13, local users can cause a denial of service (use-after-free and BUG) or possibly have unspecified other impact by leveraging differences in skb handling between hns_nic_net_xmit_hw and hns_nic_net_xmit.
Package: kernel (Red Hat Enterprise Linux 5) - Not affected
Package: kernel (Red Hat Enterpris
Debian
CVE-2017-18218: linux - In drivers/net/ethernet/hisilicon/hns/hns_enet.c in the Linux kernel before 4.13...
vendor_debian·2017·CVSS 7.8
CVE-2017-18218 [HIGH] CVE-2017-18218: linux - In drivers/net/ethernet/hisilicon/hns/hns_enet.c in the Linux kernel before 4.13...
In drivers/net/ethernet/hisilicon/hns/hns_enet.c in the Linux kernel before 4.13, local users can cause a denial of service (use-after-free and BUG) or possibly have unspecified other impact by leveraging differences in skb handling between hns_nic_net_xmit_hw and hns_nic_net_xmit.
Scope: local
bookworm: resolved (fixed in 4.13.4-1)
bullseye: resolved (fixed in 4.13.4-1)
forky: resolved (fixed in 4.13.4-1)
sid: resolved (fixed in 4.13.4-1)
trixie: resolved (fixed in 4.13.4-1)
No detection rules found.
No public exploits indexed.
http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=27463ad99f738ed93c7c8b3e2e5bc8c4853a2ff2http://www.securityfocus.com/bid/103277https://github.com/torvalds/linux/commit/27463ad99f738ed93c7c8b3e2e5bc8c4853a2ff2https://www.debian.org/security/2018/dsa-4188http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=27463ad99f738ed93c7c8b3e2e5bc8c4853a2ff2http://www.securityfocus.com/bid/103277https://github.com/torvalds/linux/commit/27463ad99f738ed93c7c8b3e2e5bc8c4853a2ff2https://www.debian.org/security/2018/dsa-4188
2018-03-05
Published