SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2018-18555

The user can then run arbitrary operating system commands with the privileges afforded by their account.

CRITICAL 9.9EPSS 1.77%

Does this matter?

High impact if exploited, but EPSS currently rates exploitation as unlikely (1.77%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.

Description

A sandbox escape issue was discovered in VyOS 1.1.8. It provides a restricted management shell for operator users to administer the device. By issuing various shell special characters with certain commands, an authenticated operator user can break out of the management shell and gain access to the underlying Linux shell. The user can then run arbitrary operating system commands with the privileges afforded by their account.

CVSS 3.0
9.9 CRITICALCVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
EPSS
1.77% probability · 77th percentile
CISA KEV
Not listed
Weakness
CWE-78
Affected
vyos/vyos
Source
cve@mitre.org

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.