CVE-2018-6534NULL Pointer Dereference in Icinga

Severity
6.5MEDIUMNVD
EPSS
0.4%
top 37.10%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedFeb 27
Latest updateMay 14

Description

An issue was discovered in Icinga 2.x through 2.8.1. By sending specially crafted messages, an attacker can cause a NULL pointer dereference, which can cause the product to crash.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:HExploitability: 2.8 | Impact: 3.6

Affected Packages2 packages

Debianicinga/icinga2< 2.8.4-1+3
NVDicinga/icinga2.0.02.8.1

🔴Vulnerability Details

3
GHSA
GHSA-mpx7-h62m-5fwv: An issue was discovered in Icinga 22022-05-14
OSV
CVE-2018-6534: An issue was discovered in Icinga 22018-02-27
CVEList
CVE-2018-6534: An issue was discovered in Icinga 22018-02-27

📋Vendor Advisories

1
Debian
CVE-2018-6534: icinga2 - An issue was discovered in Icinga 2.x through 2.8.1. By sending specially crafte...2018
CVE-2018-6534 — NULL Pointer Dereference in Icinga | cvebase