AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2018-6556

LOW · CVSS 3.3 EPSS 0.35%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2018-08-10 · Last synced 2026-08-04

CyberRota Analysis

This is a low severity vulnerability with a CVSS score of 3.3. See the original NVD description below for full technical details.

CVE
CVE-2018-6556
Severity
LOW
CVSS
3.3
EPSS
0.35%

Original NVD Description

lxc-user-nic when asked to delete a network interface will unconditionally open a user provided path. This code path may be used by an unprivileged user to check for the existence of a path which they wouldn't otherwise be able to reach. It may also be used to trigger side effects by causing a (read-only) open of special kernel files (ptmx, proc, sys). Affected releases are LXC: 2.0 versions above and including 2.0.9; 3.0 versions above and including 3.0.0, prior to 3.0.2.

Related CVEs

Other vulnerabilities affecting the same vendor(s)