CVE Database
/

CVE-2018-16884

Back to search

CVE-2018-16884

Published: Dec 18, 2018

Modified: Aug 5, 2024

PUBLISHED

CVSS v3.0

6.5

MEDIUM

Description

A flaw was found in the Linux kernel's NFS41+ subsystem. NFS41+ shares mounted in different network namespaces at the same time can make bc_svc_process() use wrong back-channel IDs and cause a use-after-free vulnerability. Thus a malicious container user can cause a host kernel memory corruption and a system panic. Due to the nature of the flaw, privilege escalation cannot be fully ruled out.

VendorProductVersions

[UNKNOWN]

kernel:

affected
n/a

Weaknesses (CWE)

CVSS v3.0 Details

CVSS v3.0 Vector

CVSS:3.0/AV:A/AC:H/PR:L/UI:N/S:C/C:N/I:L/A:H

Attack Vector

Adjacent

Attack Complexity

High

Privileges Required

Low

User Interaction

None

Scope

Changed

Confidentiality

None

Integrity

Low

Availability

High

References

106253
vdb-entry
x_refsource_BID
USN-3932-1
vendor-advisory
x_refsource_UBUNTU
USN-3932-2
vendor-advisory
x_refsource_UBUNTU
USN-3981-1
vendor-advisory
x_refsource_UBUNTU
USN-3980-1
vendor-advisory
x_refsource_UBUNTU
USN-3980-2
vendor-advisory
x_refsource_UBUNTU
USN-3981-2
vendor-advisory
x_refsource_UBUNTU
RHSA-2019:1873
vendor-advisory
x_refsource_REDHAT
RHSA-2019:1891
vendor-advisory
x_refsource_REDHAT
RHSA-2019:2696
vendor-advisory
x_refsource_REDHAT
RHSA-2019:2730
vendor-advisory
x_refsource_REDHAT
RHSA-2019:3309
vendor-advisory
x_refsource_REDHAT
RHSA-2019:3517
vendor-advisory
x_refsource_REDHAT
RHSA-2020:0204
vendor-advisory
x_refsource_REDHAT

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now