CVE-2018-2386: Buffer Overflow
Under certain conditions a malicious user provoking an out of bounds buffer overflow can prevent legitimate users from accessing the SAP Internet Graphics Server (IGS), 7.20, 7.20EXT, 7.45, 7.49, 7.53.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2018-2386?
CVE-2018-2386 is a vulnerability that allows a malicious user to provoke an out of bounds buffer overflow in the SAP Internet Graphics Server (IGS), potentially preventing legitimate users from accessing the server.
What is the severity of CVE-2018-2386?
The severity of CVE-2018-2386 is rated as medium, with a CVSS score of 6.5.
Which versions of SAP Internet Graphics Server are affected by CVE-2018-2386?
SAP Internet Graphics Server versions 7.20, 7.20EXT, 7.45, 7.49, and 7.53 are affected by CVE-2018-2386.
How can a malicious user exploit CVE-2018-2386?
A malicious user can exploit CVE-2018-2386 by provoking an out of bounds buffer overflow, which can be used to prevent legitimate users from accessing the SAP Internet Graphics Server.
Is there a patch or fix available for CVE-2018-2386?
Yes, SAP has released a security patch for CVE-2018-2386. It is recommended to apply the patch to mitigate the vulnerability.