CVE-2018-6534: Null Pointer Dereference
Published Feb 27, 2018
·Updated
An issue was discovered in Icinga 2.x through 2.8.1. By sending specially crafted messages, an attacker can cause a NULL pointer dereference, which can cause the product to crash.
Affected Software
1 affected component
Icinga Icinga>=2.0.0<=2.8.1
Event History
Feb 27, 2018
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Data Sourced
via NVD·07:29 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2018-6534.
2
What is the severity rating of CVE-2018-6534?
CVE-2018-6534 has a severity rating of medium (6.5).
3
What is the affected software for CVE-2018-6534?
The affected software for CVE-2018-6534 is Icinga 2.x through 2.8.1.
4
How can an attacker exploit CVE-2018-6534?
An attacker can exploit CVE-2018-6534 by sending specially crafted messages to trigger a NULL pointer dereference, causing the product to crash.
5
Is there a fix available for CVE-2018-6534?
Yes, a fix is available for CVE-2018-6534. It is recommended to update to version 2.8.2 or later.