Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.882980
Category:CentOS Local Security Checks
Title:CentOS Update for NetworkManager CESA-2018:3665 centos7
Summary:The remote host is missing an update for the 'NetworkManager'; package(s) announced via the CESA-2018:3665 advisory.
Description:Summary:
The remote host is missing an update for the 'NetworkManager'
package(s) announced via the CESA-2018:3665 advisory.

Vulnerability Insight:
NetworkManager is a system network service that manages network devices and
connections, attempting to keep active network connectivity when available.
Its capabilities include managing Ethernet, wireless, mobile broadband
(WWAN), and PPPoE devices, as well as providing VPN integration with a
variety of different VPN services.

Security Fix(es):

* systemd: Out-of-bounds heap write in systemd-networkd dhcpv6 option
handling (CVE-2018-15688)

For more details about the security issue(s), including the impact, a CVSS
score, and other related information, refer to the CVE page(s) listed in
the References section.

Red Hat would like to thank Ubuntu Security Team for reporting this issue.
Upstream acknowledges Felix Wilhelm (Google) as the original reporter.

Affected Software/OS:
NetworkManager on CentOS 7.

Solution:
Please install the updated package(s).

CVSS Score:
5.8

CVSS Vector:
AV:A/AC:L/Au:N/C:P/I:P/A:P

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2018-15688
BugTraq ID: 105745
http://www.securityfocus.com/bid/105745
https://security.gentoo.org/glsa/201810-10
https://github.com/systemd/systemd/pull/10518
https://lists.debian.org/debian-lts-announce/2018/11/msg00017.html
RedHat Security Advisories: RHBA-2019:0327
https://access.redhat.com/errata/RHBA-2019:0327
RedHat Security Advisories: RHSA-2018:3665
https://access.redhat.com/errata/RHSA-2018:3665
RedHat Security Advisories: RHSA-2019:0049
https://access.redhat.com/errata/RHSA-2019:0049
https://usn.ubuntu.com/3806-1/
https://usn.ubuntu.com/3807-1/
CopyrightCopyright (C) 2018 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.