CVE-2017-18360
published 2019-01-31CVE-2017-18360: In change_port_settings in drivers/usb/serial/io_ti.c in the Linux kernel before 4.11.3, local users could cause a denial of service by division-by-zero in the…
PriorityP418medium5.5CVSS 3.0
AVLACLPRLUINSUCNINAH
EPSS
0.43%
35.4th percentile
In change_port_settings in drivers/usb/serial/io_ti.c in the Linux kernel before 4.11.3, local users could cause a denial of service by division-by-zero in the serial device layer by trying to set very high baud rates.
Affected
9 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| debian | linux | < linux 4.9.30-1 (bookworm) | linux 4.9.30-1 (bookworm) |
| linux | linux_kernel | < 4.11.3 | 4.11.3 |
| linux | linux_kernel | >= 0 < 4.9.30-1 | 4.9.30-1 |
| linux | linux_kernel | >= 0 < 4.9.30-1 | 4.9.30-1 |
| linux | linux_kernel | >= 0 < 4.9.30-1 | 4.9.30-1 |
| linux | linux_kernel | >= 0 < 4.9.30-1 | 4.9.30-1 |
| linux | linux_kernel | >= 0 < 3.13.0-168.218 | 3.13.0-168.218 |
CVSS provenance
nvdv3.05.5MEDIUMCVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
nvdv2.04.9MEDIUMAV:L/AC:L/Au:N/C:N/I:N/A:C
osv7.5HIGH
vendor_ubuntu7.5HIGH
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
Linux kernel (Trusty HWE) vulnerabilities
vendor_ubuntu·2019-04-02·CVSS 7.5
CVE-2017-1000410 [HIGH] Linux kernel (Trusty HWE) vulnerabilities
Title: Linux kernel (Trusty HWE) vulnerabilities
Summary: Several security issues were fixed in the Linux kernel.
USN-3933-1 fixed vulnerabilities in the Linux kernel for Ubuntu 14.04
LTS. This update provides the corresponding updates for the Linux
Hardware Enablement (HWE) kernel from Ubuntu 14.04 LTS for Ubuntu
12.04 ESM.
It was discovered that an information leak vulnerability existed in the
Bluetooth implementation of the Linux kernel. An attacker within Bluetooth
range could possibly expose sensitive information (kernel memory).
(CVE-2017-1000410)
It was discovered that the USB serial device driver in the Linux kernel did
not properly validate baud rate settings when debugging is enabled. A local
attacker could use this to cause a denial of service (system crash).
(CVE-2017-18360
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2019-04-02·CVSS 7.5
CVE-2017-1000410 [HIGH] Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Several security issues were fixed in the Linux kernel.
It was discovered that an information leak vulnerability existed in the
Bluetooth implementation of the Linux kernel. An attacker within Bluetooth
range could possibly expose sensitive information (kernel memory).
(CVE-2017-1000410)
It was discovered that the USB serial device driver in the Linux kernel did
not properly validate baud rate settings when debugging is enabled. A local
attacker could use this to cause a denial of service (system crash).
(CVE-2017-18360)
Mathias Payer and Hui Peng discovered a use-after-free vulnerability in the
Advanced Linux Sound Architecture (ALSA) subsystem. A physically proximate
attacker could use this to cause a denial of service (system crash).
(CVE
Red Hat
kernel: Division by zero in change_port_settings in drivers/usb/serial/io_ti.c resulting in a denial of service
vendor_redhat·2017-05-11·CVSS 5.5
CVE-2017-18360 [MEDIUM] CWE-369 kernel: Division by zero in change_port_settings in drivers/usb/serial/io_ti.c resulting in a denial of service
kernel: Division by zero in change_port_settings in drivers/usb/serial/io_ti.c resulting in a denial of service
In change_port_settings in drivers/usb/serial/io_ti.c in the Linux kernel before 4.11.3, local users could cause a denial of service by division-by-zero in the serial device layer by trying to set very high baud rates.
A division-by-zero in set_termios(), when debugging is enabled, was found in the Linux kernel. When the [io_ti] driver is loaded, a local unprivileged attacker can request incorrect high transfer speed in the change_port_settings() in the drivers/usb/serial/io_ti.c so that the divisor value becomes zero and causes a system crash resulting in a denial of service.
Package: kernel (Red Hat Enterprise Linux 5) - Will not fix
Package: kernel (Red Hat Enterprise Linu
Debian
CVE-2017-18360: linux - In change_port_settings in drivers/usb/serial/io_ti.c in the Linux kernel before...
vendor_debian·2017·CVSS 5.5
CVE-2017-18360 [MEDIUM] CVE-2017-18360: linux - In change_port_settings in drivers/usb/serial/io_ti.c in the Linux kernel before...
In change_port_settings in drivers/usb/serial/io_ti.c in the Linux kernel before 4.11.3, local users could cause a denial of service by division-by-zero in the serial device layer by trying to set very high baud rates.
Scope: local
bookworm: resolved (fixed in 4.9.30-1)
bullseye: resolved (fixed in 4.9.30-1)
forky: resolved (fixed in 4.9.30-1)
sid: resolved (fixed in 4.9.30-1)
trixie: resolved (fixed in 4.9.30-1)
GHSA
GHSA-7hhv-rch7-rfmj: In change_port_settings in drivers/usb/serial/io_ti
ghsa_unreviewed·2022-05-14
CVE-2017-18360 [MEDIUM] CWE-369 GHSA-7hhv-rch7-rfmj: In change_port_settings in drivers/usb/serial/io_ti
In change_port_settings in drivers/usb/serial/io_ti.c in the Linux kernel before 4.11.3, local users could cause a denial of service by division-by-zero in the serial device layer by trying to set very high baud rates.
OSV
linux vulnerabilities
osv·2019-04-02·CVSS 7.5
CVE-2017-1000410 [HIGH] linux vulnerabilities
linux vulnerabilities
It was discovered that an information leak vulnerability existed in the
Bluetooth implementation of the Linux kernel. An attacker within Bluetooth
range could possibly expose sensitive information (kernel memory).
(CVE-2017-1000410)
It was discovered that the USB serial device driver in the Linux kernel did
not properly validate baud rate settings when debugging is enabled. A local
attacker could use this to cause a denial of service (system crash).
(CVE-2017-18360)
Mathias Payer and Hui Peng discovered a use-after-free vulnerability in the
Advanced Linux Sound Architecture (ALSA) subsystem. A physically proximate
attacker could use this to cause a denial of service (system crash).
(CVE-2018-19824)
Shlomi Oberman, Yuli Shapiro, and Ran Menscher discovered an infor
OSV
CVE-2017-18360: In change_port_settings in drivers/usb/serial/io_ti
osv·2019-01-31·CVSS 5.5
CVE-2017-18360 [MEDIUM] CVE-2017-18360: In change_port_settings in drivers/usb/serial/io_ti
In change_port_settings in drivers/usb/serial/io_ti.c in the Linux kernel before 4.11.3, local users could cause a denial of service by division-by-zero in the serial device layer by trying to set very high baud rates.
No detection rules found.
No public exploits indexed.
http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=6aeb75e6adfaed16e58780309613a578fe1ee90bhttp://www.securityfocus.com/bid/106802https://bugzilla.suse.com/show_bug.cgi?id=1123706https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.11.3https://github.com/torvalds/linux/commit/6aeb75e6adfaed16e58780309613a578fe1ee90bhttps://usn.ubuntu.com/3933-1/https://usn.ubuntu.com/3933-2/http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=6aeb75e6adfaed16e58780309613a578fe1ee90bhttp://www.securityfocus.com/bid/106802https://bugzilla.suse.com/show_bug.cgi?id=1123706https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.11.3https://github.com/torvalds/linux/commit/6aeb75e6adfaed16e58780309613a578fe1ee90bhttps://usn.ubuntu.com/3933-1/https://usn.ubuntu.com/3933-2/
2019-01-31
Published