CVE-2018-13458: Null Pointer Dereference
Published Jul 12, 2018
·Updated
qhcore in Nagios Core 4.4.1 and earlier is prone to a NULL pointer dereference vulnerability, which allows attackers to cause a local denial-of-service condition by sending a crafted payload to the listening UNIX socket.
Affected Software
1 affected component
Nagios Nagios Core<=4.4.1
Event History
Jul 12, 2018
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2018-13458?
CVE-2018-13458 is categorized as a denial-of-service (DoS) vulnerability.
2
How do I fix CVE-2018-13458?
To mitigate CVE-2018-13458, upgrade Nagios Core to version 4.4.2 or later.
3
What is affected by CVE-2018-13458?
CVE-2018-13458 affects Nagios Core versions 4.4.1 and earlier.
4
What kind of attack does CVE-2018-13458 enable?
CVE-2018-13458 enables attackers to perform a local denial-of-service attack.
5
How does CVE-2018-13458 exploit the system?
CVE-2018-13458 exploits a NULL pointer dereference vulnerability in the qh_core component.