Heap out-of-bounds write in systemd - CVE-2018-15688
Published: October 29, 2018 / Updated: March 28, 2023
Vulnerability details
The vulnerability allows a remote attacker to cause DoS condition or execute arbitrary code with elevated privileges.
The weakness exists within the written-from-scratch DHCPv6 client of the open-source Systemd management suite due to an out-of-bounds heap write in the DHCPv6 client when handling options sent by network adjacent DHCP servers. A remote attacker can supply maliciously crafted DHCPv6 packets, exploit the programming cockup, arbitrarily change parts of memory to crash or execute arbitrary code on the vulnerable Systemd-powered Linux machines.
Affected software
NetworkManager
Gentoo Linux
Arch Linux
Red Hat Enterprise Linux Server
Red Hat Enterprise Linux Workstation
Red Hat Enterprise Linux Desktop
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux for Scientific Computing
Red Hat Enterprise Linux for Power
Opensuse
Fedora
Dell EMC Data Protection Search
How to mitigate CVE-2018-15688
Dell EMC Data Protection Search - update to 18.2.1
systemd - addressed in versions 238-10.git438ac26.fc28, 239-6.git9f3aed1.fc29
External References
Related Security Bulletins
- Multiple vulnerabilities in Systemd
- Gentoo update for systemd
- Arch Linux update for systemd
- OpenSUSE Linux update for systemd
- OpenSUSE Linux update for systemd
- Red Hat update for systemd
- Multiple vulnerabilities in Dell EMC Search
- Fedora 29 update for systemd
- Fedora 28 update for systemd
- Fedora 29 update for NetworkManager
- Fedora 28 update for NetworkManager
- Fedora 27 update for NetworkManager