CVE-2018-5803 | Linux Kernel up to 4.15.7 SCTP Packet net/sctp/sm_make_chunk.c __sctp_make_chunk crng_init input validation (RHSA-2018:1854 / Nessus ID 109518)
A vulnerability, which was classified as problematic, has been found in Linux Kernel up to 4.15.7. Impacted is the function __sctp_make_chunk of the file net/sctp/sm_make_chunk.c of the component SCTP Packet Handler. Performing manipulation of the argument crng_init results in improper input validation.
This vulnerability is identified as CVE-2018-5803. The attack is only possible with local access. There is not any exploit available.
It is advisable to upgrade the affected component.