VulnerabilityModified
CVE-2018-5333
In the Linux kernel through 4.14.13, the rds_cmsg_atomic function in net/rds/rdma.c mishandles cases where page pinning fails or an invalid address is supplied, leading to an rds_atomic_free_op NULL pointer dereference.
MEDIUM 5.5EPSS 7.21%
Does this matter?
Lower severity and a low EPSS score (7.21%). Track it; it rarely justifies an emergency change on its own.
Description
In the Linux kernel through 4.14.13, the rds_cmsg_atomic function in net/rds/rdma.c mishandles cases where page pinning fails or an invalid address is supplied, leading to an rds_atomic_free_op NULL pointer dereference.
- CVSS 3.0
- 5.5 MEDIUMCVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
- EPSS
- 7.21% probability · 94th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-476
- Affected
- linux/linux kernel · debian/debian linux · canonical/ubuntu linux
- Source
- cve@mitre.org
References
- http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=7d11f77f84b27cef452cee332f4e469503084737Issue Tracking, Patch, Vendor Advisory
- http://packetstormsecurity.com/files/156053/Reliable-Datagram-Sockets-RDS-rds_atomic_free_op-Privilege-Escalation.html
- http://www.securityfocus.com/bid/102510Third Party Advisory, VDB Entry
- https://access.redhat.com/errata/RHSA-2018:0470Third Party Advisory
- https://github.com/torvalds/linux/commit/7d11f77f84b27cef452cee332f4e469503084737Patch, Vendor Advisory
- https://lists.debian.org/debian-lts-announce/2018/05/msg00000.htmlMailing List, Third Party Advisory
- https://usn.ubuntu.com/3583-1/Third Party Advisory
- https://usn.ubuntu.com/3583-2/Third Party Advisory
- https://usn.ubuntu.com/3617-1/Third Party Advisory
- https://usn.ubuntu.com/3617-2/Third Party Advisory
- https://usn.ubuntu.com/3617-3/Third Party Advisory
- https://usn.ubuntu.com/3619-1/Third Party Advisory
- https://usn.ubuntu.com/3619-2/Third Party Advisory
- https://usn.ubuntu.com/3632-1/Third Party Advisory
- https://www.debian.org/security/2018/dsa-4187Third Party Advisory
- http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=7d11f77f84b27cef452cee332f4e469503084737Issue Tracking, Patch, Vendor Advisory
- http://packetstormsecurity.com/files/156053/Reliable-Datagram-Sockets-RDS-rds_atomic_free_op-Privilege-Escalation.html
- http://www.securityfocus.com/bid/102510Third Party Advisory, VDB Entry
- https://access.redhat.com/errata/RHSA-2018:0470Third Party Advisory
- https://github.com/torvalds/linux/commit/7d11f77f84b27cef452cee332f4e469503084737Patch, Vendor Advisory
- https://lists.debian.org/debian-lts-announce/2018/05/msg00000.htmlMailing List, Third Party Advisory
- https://usn.ubuntu.com/3583-1/Third Party Advisory
- https://usn.ubuntu.com/3583-2/Third Party Advisory
- https://usn.ubuntu.com/3617-1/Third Party Advisory
- https://usn.ubuntu.com/3617-2/Third Party Advisory
- https://usn.ubuntu.com/3617-3/Third Party Advisory
- https://usn.ubuntu.com/3619-1/Third Party Advisory
- https://usn.ubuntu.com/3619-2/Third Party Advisory
- https://usn.ubuntu.com/3632-1/Third Party Advisory
- https://www.debian.org/security/2018/dsa-4187Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.