cbcvebase.
CVE-2018-5390
published 2018-08-06

CVE-2018-5390: Linux kernel versions 4.9+ can be forced to make very expensive calls to tcp_collapse_ofo_queue() and tcp_prune_ofo_queue() for every incoming packet which can…

high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
Linux kernel versions 4.9+ can be forced to make very expensive calls to tcp_collapse_ofo_queue() and tcp_prune_ofo_queue() for every incoming packet which can lead to a denial of service.

Affected

122 ranges· showing 25
VendorProductVersion rangeFixed in
a10networksadvanced_core_operating_system
a10networksadvanced_core_operating_system
a10networksadvanced_core_operating_system
a10networksadvanced_core_operating_system
a10networksadvanced_core_operating_system
canonicalubuntu_linux
canonicalubuntu_linux
canonicalubuntu_linux
canonicalubuntu_linux
ciscocollaboration_meeting_rooms
ciscodigital_network_architecture_center
ciscoexpressway
ciscoexpressway
ciscoexpressway
ciscoexpressway
ciscoexpressway
ciscoexpressway
ciscomeeting_management
ciscomeeting_management
cisconetwork_assurance_engine
ciscotelepresence_conductor_firmware
ciscotelepresence_conductor_firmware
ciscotelepresence_conductor_firmware
ciscotelepresence_conductor_firmware
ciscotelepresence_conductor_firmware

CVSS provenance

nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
osv7.5HIGH