A security flaw was found in the ipfragreasm() function in net/ipv4/ipfragment.c in the Linux kernel from 4.19-rc1 to 4.19-rc3 inclusive, which can cause a later system crash in ipdo_fragment(). With certain non-default, but non-rare, configuration of a victim host, an attacker can trigger this crash remotely, thus leading to a remote denial-of-service.
[
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "4.19-rc1"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "4.19-rc2"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "4.19-rc3"
}
]
}
]
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2018-14641.json"