CVE-2018-1068: Buffer Overflow
A flaw was found in the latest Linux kernel. A out-of-bounds write of kernel address space may be triggered via uncontrolled userland provided offset in ebtentry struct in netfilter/ebtables.c.
References:
https://marc.info/?l=linux-netdev&m=152023808817590&w=2
https://marc.info/?l=linux-netdev&m=152025888924151&w=2
An upsteam patch:
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=b71812168571fa55e44cdd0254471331b9c4c4c6
https://github.com/torvalds/linux/commit/b71812168571fa55e44cdd0254471331b9c4c4c6
Other sources
A flaw was found in the Linux 4.x kernel's implementation of 32-bit syscall interface for bridging. This allowed a privileged user to arbitrarily write to a limited range of kernel memory.
— MITRE
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
redhat/kernelto a version that resolves this vulnerability.Fixed in 3.10.0-862.1.1.el7 - Upgrade
Upgrade
debian/linuxto a version that resolves this vulnerability.Fixed in 5.10.223-1Fixed in 5.10.262-1Fixed in 6.1.176-1Fixed in 6.1.180-1Fixed in 6.12.94-1Fixed in 6.12.101-1Fixed in 7.1.8-1Fixed in 7.1.8-2
Event History
Frequently Asked Questions
What is the vulnerability ID?
CVE-2018-1068
What is the severity of CVE-2018-1068?
The severity of CVE-2018-1068 is high with a severity value of 7.
What is the affected software for CVE-2018-1068?
The affected software for CVE-2018-1068 includes Linux kernel versions 4.16~ and 3.13.0-151.201.
How does CVE-2018-1068 impact the system?
CVE-2018-1068 allows a privileged user to arbitrarily write to a limited range of kernel memory in the Linux 4.x kernel's implementation of 32-bit syscall interface for bridging.
Is there a remedy available for CVE-2018-1068?
Yes, there are remedies available for CVE-2018-1068 depending on the specific version and source of the Linux kernel.