Vulnerability Description
A sandbox escape issue was discovered in VyOS 1.1.8. It provides a restricted management shell for operator users to administer the device. By issuing various shell special characters with certain commands, an authenticated operator user can break out of the management shell and gain access to the underlying Linux shell. The user can then run arbitrary operating system commands with the privileges afforded by their account.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Vyos | Vyos | 1.1.8 |
Related Weaknesses (CWE)
References
- https://blog.vyos.io/the-operator-level-is-proved-insecure-and-will-be-removed-iExploitVendor Advisory
- https://blog.vyos.io/the-operator-level-is-proved-insecure-and-will-be-removed-iExploitVendor Advisory
FAQ
What is CVE-2018-18555?
CVE-2018-18555 is a vulnerability with a CVSS score of 9.9 (CRITICAL). A sandbox escape issue was discovered in VyOS 1.1.8. It provides a restricted management shell for operator users to administer the device. By issuing various shell special characters with certain com...
How severe is CVE-2018-18555?
CVE-2018-18555 has been rated CRITICAL with a CVSS base score of 9.9/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2018-18555?
Check the references section above for vendor advisories and patch information. Affected products include: Vyos Vyos.