CVE-2018-17158

In FreeBSD before 11.2-STABLE(r340854) and 11.2-RELEASE-p5, an integer overflow error can occur when handling the client address length field in an NFSv4 request. Unprivileged remote users with access to the NFS server can crash the system by sending a specially crafted NFSv4 request.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:freebsd:freebsd:*:*:*:*:*:*:*:*
cpe:2.3:o:freebsd:freebsd:11.2:p5:*:*:*:*:*:*

History

No history.

Information

Published : 2018-12-04 15:29

Updated : 2023-12-10 12:44


NVD link : CVE-2018-17158

Mitre link : CVE-2018-17158

CVE.ORG link : CVE-2018-17158


JSON object : View

Products Affected

freebsd

  • freebsd
CWE
CWE-190

Integer Overflow or Wraparound