Medium severity4.7NVD Advisory· Published Jan 3, 2019· Updated Jun 17, 2026
CVE-2018-16885
CVE-2018-16885
Description
A flaw was found in the Linux kernel that allows the userspace to call memcpy_fromiovecend() and similar functions with a zero offset and buffer length which causes the read beyond the buffer boundaries, in certain cases causing a memory access fault and a system halt by accessing invalid memory address. This issue only affects kernel version 3.10.x as shipped with Red Hat Enterprise Linux 7.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- Range: 7 3.10.x
- cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
4- www.securityfocus.com/bid/106296nvdThird Party AdvisoryVDB Entry
- bugzilla.redhat.com/show_bug.cginvdIssue TrackingThird Party Advisory
- access.redhat.com/errata/RHSA-2019:2029nvd
- access.redhat.com/errata/RHSA-2019:2043nvd
News mentions
0No linked articles in our index yet.