https://seclists.org/oss-sec/2026/q2/669: illumos: 18118 SCTP fes wrong-size, and need to keep private options
Published May 22, 2026
·Updated
Affected Software
4 affected components
illumos Illumos
OmniOS OmniOS
SmartOS SmartOS
OpenIndiana OpenIndiana
Frequently Asked Questions
1
What is the severity of CVE-2026-18118?
CVE-2026-18118 has the potential for privilege escalation, indicating a high severity level.
2
How do I fix CVE-2026-18118?
To mitigate CVE-2026-18118, illumos distros should apply hotpatches or update to the latest versions.
3
Which illumos variants are affected by CVE-2026-18118?
CVE-2026-18118 affects illumos, OmniOS, SmartOS, and OpenIndiana variants.
4
Have any updates been released for CVE-2026-18118?
Yes, OmniOS has released updates via IPS and SmartOS has respun its biweekly release to include the fix.
5
Is there an immediate risk associated with CVE-2026-18118?
Yes, the vulnerability poses a threat of privilege escalation if not addressed promptly.