New issue
Advanced search Search tips

Issue 912888 link

Starred by 2 users

Issue metadata

Status: WontFix
Owner:
Closed: Dec 7
Cc:
Components:
EstimatedDays: ----
NextAction: ----
OS: Chrome
Pri: 3
Type: Bug-Security



Sign in to add a comment

CVE-2018-18386 CrOS: Vulnerability reported in Linux kernel

Project Member Reported by vomit.go...@appspot.gserviceaccount.com, Dec 7

Issue description

VOMIT (go/vomit) has received an external vulnerability report for the Linux kernel. 

Advisory: CVE-2018-18386
  Details: http://vomit.googleplex.com/advisory?id=CVE/CVE-2018-18386
  CVSS severity score: 2.1/10.0
  Description:

drivers/tty/n_tty.c in the Linux kernel before 4.14.11 allows local attackers (who are able to access pseudo terminals) to hang/block further usage of any pseudo terminal devices due to an EXTPROC versus ICANON confusion in TIOCINQ.



This bug was filed by http://go/vomit
Please contact us at vomit-team@google.com if you need any assistance.

 
Owner: groeck@chromium.org
groeck@, this sounds like a DoS, yes? If so we can set it to a normal bug. I also doubt we expose pseudo terminals to users on Chrome OS?
Cc: wonderfly@google.com zsm@chromium.org
Labels: Security_Impact-Stable Security_Severity-Low Pri-3
Status: WontFix (was: Untriaged)
@1: As usual, please keep in mind that Chrome OS kernels are not only used by Chrome OS nowadays. As such, I tend to stick with our common evaluation and do not try to make calls like that.

Upstream commit 966031f340185 ("n_tty: fix EXTPROC vs ICANON interaction with TIOCINQ (aka FIONREAD)"). Fixed in chromeos-{4.4,4.14,4.19}. Low severity, thus marking as WontFix for older kernels.
Cc: mikewu@google.com

Sign in to add a comment