CVE-2018-1205: Buffer Overflow
Published Mar 27, 2018
·Updated
Dell EMC ScaleIO, versions prior to 2.5, do not properly handle some packet data in the MDM service. As a result, a remote attacker could potentially send specifically crafted packet data to the MDM service causing it to crash.
Affected Software
1 affected component
Dell EMC ScaleIO<2.5
Event History
Mar 27, 2018
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2018-1205?
CVE-2018-1205 has a medium severity rating due to its potential to cause service disruption.
2
How do I fix CVE-2018-1205?
To mitigate CVE-2018-1205, upgrade to Dell EMC ScaleIO version 2.5 or later.
3
What impact does CVE-2018-1205 have on affected systems?
CVE-2018-1205 may allow a remote attacker to crash the MDM service by sending crafted packet data.
4
Which versions of Dell EMC ScaleIO are affected by CVE-2018-1205?
CVE-2018-1205 affects all versions of Dell EMC ScaleIO prior to 2.5.
5
Can CVE-2018-1205 be exploited remotely?
Yes, CVE-2018-1205 can be exploited remotely, allowing attackers to send malicious packets.