AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2018-16884

HIGH · CVSS 8 EPSS 1.46%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2018-12-18 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 8.0. It affects Linux.

CVE
CVE-2018-16884
Severity
HIGH
CVSS
8
EPSS
1.46%
Linux

Original NVD Description

A flaw was found in the Linux kernel's NFS41+ subsystem. NFS41+ shares mounted in different network namespaces at the same time can make bc_svc_process() use wrong back-channel IDs and cause a use-after-free vulnerability. Thus a malicious container user can cause a host kernel memory corruption and a system panic. Due to the nature of the flaw, privilege escalation cannot be fully ruled out.

Related CVEs

Other vulnerabilities affecting the same vendor(s)