Red Hat Bugzilla – Bug 1597747
CVE-2018-13053 kernel: Integer overflow in the alarm_timer_nsleep function
Last modified: 2018-08-02 21:20:42 EDT
A flaw was found in the alarm_timer_nsleep() function in kernel/time/alarmtimer.c in the Linux kernel. The ktime_add_safe() function is not used and an integer overflow can happen causing an alarm not to fire if using a large relative timeout. References: https://bugzilla.kernel.org/show_bug.cgi?id=200303 A suggested upstream patch: https://git.kernel.org/pub/scm/linux/kernel/git/tip/tip.git/commit/?id=5f936e19cc0ef97dbe3a56e9498922ad5ba1edef
Created kernel tracking bugs for this issue: Affects: fedora-all [bug 1597748]
Note: This bug is present in certain Red Hat products, but the security impact is absent. Therefore, we do not consider this bug to be a security flaw.