Description
DHCP packages in Red Hat Enterprise Linux 6 and 7, Fedora 28, and earlier are vulnerable to a command injection flaw in the NetworkManager integration script included in the DHCP client. A malicious DHCP server, or an attacker on the local network able to spoof DHCP responses, could use this flaw to execute arbitrary commands with root privileges on systems using NetworkManager and configured to obtain network configuration using the DHCP protocol.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
No history.
Subscriptions
Fedoraproject
Subscribe
Fedora
Subscribe
Redhat
Subscribe
Enterprise Linux
Subscribe
Enterprise Linux Desktop
Subscribe
Enterprise Linux Server
Subscribe
Enterprise Linux Workstation
Subscribe
Enterprise Virtualization
Subscribe
Enterprise Virtualization Host
Subscribe
Rhel Aus
Subscribe
Rhel E4s
Subscribe
Rhel Eus
Subscribe
Rhel Tus
Subscribe
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-05T03:51:48.789Z
Reserved: 2017-12-04T00:00:00.000Z
Link: CVE-2018-1111
No data.
Status : Modified
Published: 2018-05-17T16:29:00.217
Modified: 2024-11-21T03:59:12.207
Link: CVE-2018-1111
OpenCVE Enrichment
No data.