Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
4358 articles · 196331 vulns · 36/41 feeds (7d)
← Back to list
7.8
CVE-2026-18917EXPLOITED
red hat · red hat enterprise linux

Libvirt: integer overflow in nodegetfreepages rpc handler leading to heap buffer overflow

Description

A flaw was found in libvirt. An unprivileged local user could exploit an integer overflow vulnerability in the NodeGetFreePages RPC handler. This flaw allows crafted values to bypass a size check, leading to an undersized memory buffer. Subsequently, real NUMA node data can overwrite this buffer. This heap buffer overflow can corrupt the root libvirt daemon's memory, potentially leading to a denial of service or local privilege escalation.

Affected Products

VendorProductVersions
red hatred hat enterprise linux—

Also Affects

Downstream vendors/products affected by this vulnerability

VendorProductSourceConfidence
open sourceopen source libvirtcert_advisory90%

References

  • https://access.redhat.com/security/cve/CVE-2026-18917(vdb-entry, x_refsource_REDHAT)
  • https://bugzilla.redhat.com/show_bug.cgi?id=2520161(issue-tracking, x_refsource_REDHAT)

Related News (2 articles)

Tier B
BSI Advisories2d ago
[NEU] [hoch] libvirt: Schwachstelle ermöglicht Privilegieneskalation und DoS
→ No new info (linked only)
Tier C
VulDB3d ago
CVE-2026-18917 | Red Hat Enterprise Linux/Enterprise Linux for NVIDIA NodeGetFreePages RPC handler integer overflow
→ No new info (linked only)
CVSS 3.17.8 NONE
CISA KEV❌ No
Actively exploited✅ Yes
CWECWE-190
PublishedAug 20, 2026
Last enriched3d ago
Tags
remote code executionfile manipulationdenial of servicemultiple vulnerabilities
Trending Score35
Source articles2
Independent2
Info Completeness0/14
Missing: cve_id, title, description, vendor, product, versions, cvss, epss, cwe, kev, exploit, patch, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

NONECVE-2026-13595EXP
Util-linux: util-linux: heap use-after-free in libblkid nested partition probing
Trending: 36
NONECVE-2026-17523EXP
Kernel: can:bcm: arbitrary kernel code execution leading to escalate privileges
Trending: 33
NONECVE-2026-18963
Keycloak-services: keycloak-services: unauthenticated account takeover via reset-credentials flow bypass
Trending: 26
MEDIUMCVE-2026-73199EXP
Ipa: freeipa: null pointer dereference in `ipa-enrollment` extended operation (`join_oid`) via missing request value
Trending: 23
NONECVE-2026-77176
Kata-containers: insufficient validation of createcontainer mount and storage rules in genpolicy
Trending: 23

Pin to Dashboard

Verification

State: unverified
Confidence: 0%

Vulnerability Timeline

CVE Published
Aug 20, 2026
Discovered by ZDM
Aug 20, 2026
Actively Exploited
Aug 20, 2026
Exploit Available
Aug 20, 2026