CVE-2017-15118: Canonical Ubuntu Linux
Critical severity, CVSS 9.8. EPSS: 11.9% chance of exploitation in the next 30 days.
A stack-based buffer overflow vulnerability was found in NBD server implementation in qemu before 2.11 allowing a client to request an export name of size up to 4096 bytes, which in fact should be limited to 256 bytes, causing an out-of-bounds stack write in the qemu process. If NBD server requires TLS, the attacker cannot trigger the buffer overflow without first successfully negotiating TLS.
Affected products
- Canonical Ubuntu Linux: version 14.04 only; version 16.04 only; version 17.10 only
- Qemu Qemu: before 2.11 (fixed in 2.11)
- Red Hat Enterprise Linux: version 7.0 only
Published 2018-07-27. Last modified 2026-06-17.