Vulnerability Bulletins

DSA-4272 linux - security update

   
Affected software Debian
 
CVE-2018-5391 (FragmentSmack) Juha-Matti Tilli discovered a flaw in the way the Linux kernel handled reassembly of fragmented IPv4 and IPv6 packets. A remote attacker can take advantage of this flaw to trigger time and calculation expensive fragment reassembly algorithms by sending specially crafted packets, leading to remote denial of service.

More info:

https://www.debian.org/security/2018/dsa-4272