CVE-2018-7191
MEDIUMLinux Kernel < 4.13.14 - Denial of Service via TUNSETIFF ioctl with Invalid Device Name
Title source: llmDescription
In the tun subsystem in the Linux kernel before 4.13.14, dev_get_valid_name is not called before register_netdevice. This allows local users to cause a denial of service (NULL pointer dereference and panic) via an ioctl(TUNSETIFF) call with a dev name containing a / character. This is similar to CVE-2013-4343.
References (11)
Core 11
Core References
Exploit, Third Party Advisory x_refsource_misc
https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1743792
Patch, Third Party Advisory x_refsource_misc
https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1748846
Patch, Third Party Advisory x_refsource_misc
https://github.com/torvalds/linux/commit/0ad646c81b2182f7fa67ec0c8c825e0ee165696d
Patch, Third Party Advisory, Vendor Advisory x_refsource_misc
https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=0ad646c81b2182f7fa67ec0c8c825e0ee165696d
Patch, Third Party Advisory x_refsource_misc
https://github.com/torvalds/linux/commit/5c25f65fd1e42685f7ccd80e0621829c105785d9
Patch, Vendor Advisory x_refsource_misc
https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=5c25f65fd1e42685f7ccd80e0621829c105785d9
Release Notes, Vendor Advisory x_refsource_misc
https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.13.14
Third Party Advisory, VDB Entry vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/108380
Mailing List vendor-advisory
x_refsource_suse
http://lists.opensuse.org/opensuse-security-announce/2019-05/msg00071.html
Mailing List vendor-advisory
x_refsource_suse
http://lists.opensuse.org/opensuse-security-announce/2019-06/msg00039.html
Mailing List vendor-advisory
x_refsource_suse
http://lists.opensuse.org/opensuse-security-announce/2019-06/msg00048.html
Scores
CVSS v3
5.5
EPSS
0.0065
EPSS Percentile
46.6%
Attack Vector
LOCAL
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Details
CWE
CWE-476
Status
published
Products (1)
linux/linux_kernel
< 4.13.14
Published
May 17, 2019
Tracked Since
Feb 18, 2026