← back
CVE-2018-3840

CVE-2018-3840

CVSS 5.3 MEDIUMEPSS 1.6%
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 5.3EPSS 1.6%KEV nãoPoC Nuclei Metasploit Patch
Lifecycle
26 Jun 2018Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
A denial-of-service vulnerability exists in the Pixar Renderman IT Display Service 21.6 (0x67). The vulnerability is present in the parsing of a network packet without proper validation of the packet. The data read by the application is not validated, and its use can lead to a null pointer dereference. The IT application is opened by a user and then listens for a connection on port 4001. An attacker can deliver an attack once the application has been opened.
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
Affected products
Talos · Pixar Renderman

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →