CVE-2018-1118
Last modified
CVE-2018-1118 is a low-severity vulnerability rated 2.3/10 on the CVSS scale. Linux kernel vhost since version 4.8 does not properly initialize memory in messages passed between virtual guests and the host operating system in the vhost/vhost.c:vhost_new_msg() function. This can allow local privileged users to read some kernel memory contents when reading from the /dev/vhost-net device file.. EPSS estimates a 0.40% chance of exploitation in the next 30 days.
Description
Linux kernel vhost since version 4.8 does not properly initialize memory in messages passed between virtual guests and the host operating system in the vhost/vhost.c:vhost_new_msg() function. This can allow local privileged users to read some kernel memory contents when reading from the /dev/vhost-net device file.
Metrics
CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Linux | Linux Kernel | >= 4.8, < 4.18 |
| Debian | Debian Linux | 8.0 |
| Canonical | Ubuntu Linux | 16.04 |
| Canonical | Ubuntu Linux | 18.04 |
| Redhat | Virtualization Host | 4.0 |
| Redhat | Enterprise Linux Desktop | 7.0 |
| Redhat | Enterprise Linux Server | 7.0 |
| Redhat | Enterprise Linux Workstation | 7.0 |
References
- https://access.redhat.com/errata/RHSA-2018:2948Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:3083Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:3096Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-1118Issue Tracking, Third Party Advisory
- https://lists.debian.org/debian-lts-announce/2018/07/msg00020.htmlMailing List, Third Party Advisory
- https://usn.ubuntu.com/3762-1/Third Party Advisory
- https://usn.ubuntu.com/3762-2/Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:2948Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:3083Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:3096Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-1118Issue Tracking, Third Party Advisory
- https://lists.debian.org/debian-lts-announce/2018/07/msg00020.htmlMailing List, Third Party Advisory
- https://usn.ubuntu.com/3762-1/Third Party Advisory
- https://usn.ubuntu.com/3762-2/Third Party Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2018-1118?
How severe is CVE-2018-1118?
How do I fix CVE-2018-1118?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2018
- CVE-2018-11174Quest DR Series Disk Backup software version before 4.0.3.1 …
- CVE-2018-11175Quest DR Series Disk Backup software version before 4.0.3.1 …
- CVE-2018-11176Quest DR Series Disk Backup software version before 4.0.3.1 …
- CVE-2018-11177Quest DR Series Disk Backup software version before 4.0.3.1 …
- CVE-2018-11178Quest DR Series Disk Backup software version before 4.0.3.1 …
- CVE-2018-11179Quest DR Series Disk Backup software version before 4.0.3.1 …
- CVE-2018-11180Quest DR Series Disk Backup software version before 4.0.3.1 …
- CVE-2018-11181Quest DR Series Disk Backup software version before 4.0.3.1 …
- CVE-2018-11182Quest DR Series Disk Backup software version before 4.0.3.1 …
- CVE-2018-11183Quest DR Series Disk Backup software version before 4.0.3.1 …
- CVE-2018-11184Quest DR Series Disk Backup software version before 4.0.3.1 …
- CVE-2018-11185Quest DR Series Disk Backup software version before 4.0.3.1 …
Are you affected by CVE-2018-1118?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
