What is CVE-2026-18728?
CVE-2026-18728 is an integer underflow vulnerability in the iscsiuio component of open-iscsi during IPv4 DHCP parsing. A remote attacker on the same local network segment can cause a denial of service by sending a specially crafted packet. Applying security patches and monitoring DHCP traffic on untrusted networks is recommended.
Azərbaycanca: CVE-2026-18728, open-iscsi proqramının iscsiuio komponentində tam ədəd daşması (integer underflow) zəifliyidir. Xüsusilə IPv4 DHCP analizi zamanı lokal şəbəkədəki uzaqdan hücumçuya xüsusi hazırlanmış paket vasitəsilə xidmət dayandırma (DoS) hücumu etməyə imkan verir. Təhlükəsizlik yaması tətbiq olunana qədər etibarsız şəbəkələrdə DHCP trafikinin monitorinqi tövsiyə edilir.
Related CVEs
link basis: same weakness class CWE-190
FAQ2
What is the cause of CVE-2026-18728?
This vulnerability is caused by an integer underflow in the iscsiuio component of open-iscsi during IPv4 DHCP parsing.
What can an attacker achieve by exploiting CVE-2026-18728?
A remote attacker on the same local network segment can cause a denial of service (DoS) by sending a specially crafted packet.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.