CVE-2018-7191 PUBLISHED

In the tun subsystem in the Linux kernel before 4.13.14, dev_get_valid_name is not called before register_netdevice. This allows local users to cause a denial of service (NULL pointer dereference and panic) via an ioctl(TUNSETIFF) call with a dev name containing a / character. This is similar to CVE-2013-4343.

EPSS 0.08% · 22.4th percentile

Risk Scores

EPSS Score
0.08%
22.4th percentile

Affected Products

VendorProductVersions
Ubuntu:Pro:14.04:LTSlinux-azure4.15.0-1158.173~14.04.1, 4.15.0-1157.172~14.04.2, 4.15.0-1153.168~14.04.1
Ubuntu:Pro:16.04:LTSlinux-azure4.15.0-1022.22~16.04.1, 4.15.0-1021.21~16.04.1, 4.15.0-1019.19~16.04.1
Ubuntu:Pro:20.04:LTSlinux-oracle5.4.0-1123.132, 5.4.0-1152.162, 5.4.0-1151.161
Ubuntu:Pro:16.04:LTSlinux4.4.0-254.288, 4.4.0-253.287, 4.4.0-252.286
Ubuntu:Pro:18.04:LTSlinux-azure-5.45.4.0-1104.110~18.04.1, 5.4.0-1101.107~18.04.1, 5.4.0-1100.106~18.04.1
Ubuntu:Pro:20.04:LTSlinux-raspi5.4.0-1136.149, 0, 5.4.0-1007.7
Ubuntu:Pro:16.04:LTSlinux-aws4.4.0-1168.183, 4.4.0-1171.186, 4.4.0-1172.187
Ubuntu:Pro:20.04:LTSlinux-bluefield5.4.0-1045.50, 5.4.0-1035.38, 5.4.0-1036.39
Ubuntu:Pro:FIPS:18.04:LTSlinux-fips4.15.0-1011.12, 0
Ubuntu:Pro:20.04:LTSlinux5.4.0-67.75, 5.4.0-37.41, 5.4.0-39.43
Ubuntu:Pro:18.04:LTSlinux-aws-5.45.4.0-1110.119~18.04.1, 5.4.0-1109.118~18.04.1, 5.4.0-1107.115~18.04.1
Ubuntu:Pro:FIPS-updates:20.04:LTSlinux-azure-fips5.4.0-1078.81+fips1, 5.4.0-1022.22+fips1, 5.4.0-1073.76+fips1
Ubuntu:20.04:LTSlinux-gke5.4.0-1033.35, 0, 5.4.0-1041.43
Ubuntu:Pro:20.04:LTSlinux-xilinx-zynqmp5.4.0-1065.69, 0, 5.4.0-1020.24
Ubuntu:20.04:LTSlinux-raspi25.4.0-1006.6, 5.4.0-1004.4, 5.3.0-1017.19
Ubuntu:20.04:LTSlinux-gkeop-5.155.15.0-1048.55~20.04.1, 5.15.0-1047.54~20.04.1, 5.15.0-1046.53~20.04.1
Ubuntu:Pro:FIPS-updates:20.04:LTSlinux-aws-fips5.4.0-1144.155+fips1, 5.4.0-1145.156+fips1, 5.4.0-1146.156+fips1
Ubuntu:Pro:FIPS-updates:18.04:LTSlinux-aws-fips4.15.0-2085.91, 4.15.0-2092.98, 4.15.0-2090.96
Ubuntu:Pro:FIPS:20.04:LTSlinux-aws-fips5.4.0-1021.21+fips2, 0
Ubuntu:Pro:18.04:LTSlinux-oracle4.15.0-1085.93, 4.15.0-1144.155, 4.15.0-1145.156

…and 45 more

Timeline

References

Open in Interactive Console →