CVE-2018-15688: Out-of-Bounds write in systemd-networkd dhcpv6 option handling
A buffer overflow vulnerability in the dhcp6 client of systemd allows a malicious dhcp6 server to overwrite heap memory in systemd-networkd. Affected releases are systemd: versions up to and including 239.
Other sources
systemd-networkd is vulnerable to an out out-of-bounds heap write in the DHCPv6 client when handling options sent by network adjacent DHCP servers. A attacker could exploit this via malicious DHCP server to corrupt heap memory on client machines, resulting in a denial of service or potential code execution.
— Red Hat
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the vulnerability ID for this vulnerability?
The vulnerability ID is CVE-2018-15688.
What is the severity of CVE-2018-15688?
The severity of CVE-2018-15688 is high.
Which software versions are affected by CVE-2018-15688?
Versions up to and including 239 of systemd are affected by CVE-2018-15688.
How does CVE-2018-15688 work?
CVE-2018-15688 is a buffer overflow vulnerability in the dhcp6 client of systemd, allowing a malicious dhcp6 server to overwrite heap memory in systemd-networkd.
Are there any fixes available for CVE-2018-15688?
Yes, there are fixes available for CVE-2018-15688. Please refer to the provided references for more information.