VYPR
Critical severity9.8NVD Advisory· Published Dec 4, 2018· Updated Jun 17, 2026

CVE-2018-17157

CVE-2018-17157

Description

In FreeBSD before 11.2-STABLE(r340854) and 11.2-RELEASE-p5, an integer overflow error when handling opcodes can cause memory corruption by sending a specially crafted NFSv4 request. Unprivileged remote users with access to the NFS server may be able to execute arbitrary code.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4
  • FreeBSD/FreeBSD4 versions
    cpe:2.3:o:freebsd:freebsd:*:*:*:*:*:*:*:*+ 3 more
    • cpe:2.3:o:freebsd:freebsd:*:*:*:*:*:*:*:*range: <11.2
    • cpe:2.3:o:freebsd:freebsd:11.2:p4:*:*:*:*:*:*
    • (no CPE)range: <11.2-STABLE(r340854) and <11.2-RELEASE-p5
    • (no CPE)range: FreeBSD 11.2 before 11.2-RELEASE-p5

Patches

Vulnerability mechanics

References

4

News mentions

0

No linked articles in our index yet.