CVE-2017-18218: Use After Free

Published Mar 5, 2018
·
Updated

In drivers/net/ethernet/hisilicon/hns/hnsenet.c in the Linux kernel before 4.13, local users can cause a denial of service (use-after-free and BUG) or possibly have unspecified other impact by leveraging differences in skb handling between hnsnicnetxmithw and hnsnicnetxmit.

Affected Software

3 affected componentsFixes available
debian/linux
4.19.249-24.19.289-25.10.197-15.10.191-16.1.66-16.1.52-16.5.13-16.6.8-1
Linux Linux kernel>=4.5<4.9.92
Linux Linux kernel>=4.10<4.13

Event History

Mar 5, 2018
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description

Frequently Asked Questions

1

Who can exploit this issue?

A local user with existing low-level privileges can exploit it. The supplied CVSS vector requires local access and privileges, and does not require user interaction.

2

What is the likely impact of successful exploitation?

Successful exploitation can cause a denial of service through a use-after-free condition and kernel BUG. Other impacts are possible but unspecified in the available information.

3

Which systems should be prioritized for remediation?

Prioritize Linux kernel deployments using versions before 4.13, particularly systems that expose local access to untrusted or less-trusted users. The affected code is in the HiSilicon HNS Ethernet driver.

4

What remediation is available?

A patch is available in Linux kernel commit 27463ad99f738ed93c7c8b3e2e5bc8c4853a2ff2. Apply the vendor-provided kernel update or ensure the equivalent fix is present in the deployed kernel.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203