CVE-2018-5703: Linux Kernel
Critical severity, CVSS 9.8. EPSS: 2.6% chance of exploitation in the next 30 days.
The tcp_v6_syn_recv_sock function in net/ipv6/tcp_ipv6.c in the Linux kernel through 4.14.11 allows attackers to cause a denial of service (slab out-of-bounds write) or possibly have unspecified other impact via vectors involving TLS.
Affected products
- Linux Linux Kernel: from 4.13, before 4.14.86 (fixed in 4.14.86); from 4.15, before 4.15.8 (fixed in 4.15.8)
Published 2018-01-16. Last modified 2026-06-17.