Use-after-free vulnerability in hns_enet.c in Linux kernel before 4.13

Use-after-free vulnerability in hns_enet.c in Linux kernel before 4.13

CVE-2017-18218 · HIGH Severity

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In drivers/net/ethernet/hisilicon/hns/hns_enet.c in the Linux kernel before 4.13, local users can cause a denial of service (use-after-free and BUG) or possibly have unspecified other impact by leveraging differences in skb handling between hns_nic_net_xmit_hw and hns_nic_net_xmit.

Learn more about our Cis Benchmark Audit For Distribution Independent Linux.