CVE-2017-15118: Canonical Ubuntu Linux

Critical severity, CVSS 9.8. EPSS: 11.9% chance of exploitation in the next 30 days.

A stack-based buffer overflow vulnerability was found in NBD server implementation in qemu before 2.11 allowing a client to request an export name of size up to 4096 bytes, which in fact should be limited to 256 bytes, causing an out-of-bounds stack write in the qemu process. If NBD server requires TLS, the attacker cannot trigger the buffer overflow without first successfully negotiating TLS.

Affected products

  • Canonical Ubuntu Linux: version 14.04 only; version 16.04 only; version 17.10 only
  • Qemu Qemu: before 2.11 (fixed in 2.11)
  • Red Hat Enterprise Linux: version 7.0 only

Published 2018-07-27. Last modified 2026-06-17.