The Linux kernel before 4.15-rc8 was found to be vulnerable to a NULL pointer dereference bug in the _netlinknscapable() function in the net/netlink/afnetlink.c file. A local attacker could exploit this when a net namespace with a netnsid is assigned to cause a kernel panic and a denial of service.
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2018-14646.json"
[
{
"target": {
"file": "net/core/rtnetlink.c",
"function": "rtnl_getlink"
},
"digest": {
"length": 1385.0,
"function_hash": "26822486186951770484192177071684377276"
},
"signature_type": "Function",
"id": "CVE-2018-14646-09b77029",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@f428fe4a04cc339166c8bbd489789760de3a0cee",
"deprecated": false,
"signature_version": "v1"
},
{
"target": {
"file": "net/core/rtnetlink.c"
},
"digest": {
"line_hashes": [
"12354190830279754336394216559119265818",
"125628496750596453482503090650058434809",
"169812466349076886064171800281799275377",
"146208715868129990843830872126667605881",
"127748835516357273583203734608271059575",
"15161484523731807078542918865246262638",
"209273024546698040890937088372478749561",
"28888389615603678464293016176987723941",
"328128792784972653867254865034927740082",
"18741302312831488498739664085724910552",
"201823448204966713564645580936054696290",
"28611804129847626102422128148151227257",
"241763611694091678800705825020905524314",
"293489097916711642827777610196782700366",
"261392515590104558574409364066145238930",
"176613186155030031899502090333121858134",
"95702251548660393782079137167021535829",
"264566972042069294918550845026931617680"
],
"threshold": 0.9
},
"signature_type": "Line",
"id": "CVE-2018-14646-2c27b81a",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@f428fe4a04cc339166c8bbd489789760de3a0cee",
"deprecated": false,
"signature_version": "v1"
},
{
"target": {
"file": "net/core/rtnetlink.c",
"function": "rtnl_dump_ifinfo"
},
"digest": {
"length": 1727.0,
"function_hash": "305676049699056246480878881908069183155"
},
"signature_type": "Function",
"id": "CVE-2018-14646-7bba9a56",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@f428fe4a04cc339166c8bbd489789760de3a0cee",
"deprecated": false,
"signature_version": "v1"
},
{
"target": {
"file": "net/core/rtnetlink.c",
"function": "get_target_net"
},
"digest": {
"length": 299.0,
"function_hash": "86552722843695020002378998139588679944"
},
"signature_type": "Function",
"id": "CVE-2018-14646-a9fa1467",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@f428fe4a04cc339166c8bbd489789760de3a0cee",
"deprecated": false,
"signature_version": "v1"
}
]