CVE-2018-13053
kernel: Integer overflow in the alarm_timer_nsleep function
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
The alarm_timer_nsleep function in kernel/time/alarmtimer.c in the Linux kernel through 4.17.3 has an integer overflow via a large relative timeout because ktime_add_safe is not used.
La función alarm_timer_nsleep en kernel/time/alarmtimer.c en el kernel de Linux hasta la versión 4.17.3 tiene un desbordamiento de enteros a través de un tiempo de espera relativo grande porque no se utiliza ktime_add_safe.
A flaw was found in the alarm_timer_nsleep() function in kernel/time/alarmtimer.c in the Linux kernel. The ktime_add_safe() function is not used and an integer overflow can happen causing an alarm not to fire or possibly a denial-of-service if using a large relative timeout.
USN-3821-1 fixed vulnerabilities in the Linux kernel for Ubuntu 16.04 LTS. This update provides the corresponding updates for the Linux Hardware Enablement kernel from Ubuntu 16.04 LTS for Ubuntu 14.04 LTS. Wen Xu discovered that the ext4 filesystem implementation in the Linux kernel did not properly ensure that xattr information remained in inode bodies. An attacker could use this to construct a malicious ext4 image that, when mounted, could cause a denial of service. Various other issues were also addressed.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2018-07-02 CVE Reserved
- 2018-07-02 CVE Published
- 2024-08-05 CVE Updated
- 2025-04-17 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-190: Integer Overflow or Wraparound
CAPEC
References (15)
URL | Tag | Source |
---|---|---|
http://www.securityfocus.com/bid/104671 | Third Party Advisory | |
https://lists.debian.org/debian-lts-announce/2019/03/msg00017.html | Mailing List |
|
https://lists.debian.org/debian-lts-announce/2019/03/msg00034.html | Mailing List |
|
https://lists.debian.org/debian-lts-announce/2019/04/msg00004.html | Mailing List |
|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://bugzilla.kernel.org/show_bug.cgi?id=200303 | 2019-04-23 | |
https://git.kernel.org/pub/scm/linux/kernel/git/tip/tip.git/commit/?id=5f936e19cc0ef97dbe3a56e9498922ad5ba1edef | 2019-04-23 |
URL | Date | SRC |
---|---|---|
https://access.redhat.com/errata/RHSA-2019:0831 | 2019-04-23 | |
https://access.redhat.com/errata/RHSA-2019:2029 | 2019-04-23 | |
https://access.redhat.com/errata/RHSA-2019:2043 | 2019-04-23 | |
https://usn.ubuntu.com/3821-1 | 2019-04-23 | |
https://usn.ubuntu.com/3821-2 | 2019-04-23 | |
https://usn.ubuntu.com/4094-1 | 2019-04-23 | |
https://usn.ubuntu.com/4118-1 | 2019-04-23 | |
https://access.redhat.com/security/cve/CVE-2018-13053 | 2019-08-07 | |
https://bugzilla.redhat.com/show_bug.cgi?id=1597747 | 2019-08-07 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Linux Search vendor "Linux" | Linux Kernel Search vendor "Linux" for product "Linux Kernel" | <= 4.17.3 Search vendor "Linux" for product "Linux Kernel" and version " <= 4.17.3" | - |
Affected
| ||||||
Canonical Search vendor "Canonical" | Ubuntu Linux Search vendor "Canonical" for product "Ubuntu Linux" | 14.04 Search vendor "Canonical" for product "Ubuntu Linux" and version "14.04" | lts |
Affected
| ||||||
Canonical Search vendor "Canonical" | Ubuntu Linux Search vendor "Canonical" for product "Ubuntu Linux" | 16.04 Search vendor "Canonical" for product "Ubuntu Linux" and version "16.04" | lts |
Affected
| ||||||
Debian Search vendor "Debian" | Debian Linux Search vendor "Debian" for product "Debian Linux" | 8.0 Search vendor "Debian" for product "Debian Linux" and version "8.0" | - |
Affected
|