CVE-2018-1160Exploit(debian / debian_linux)

LOWCVSS 9.8 · CRITICAL

Exploit discussion active in current signal (1 latest mentions)

Immediate actions

  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft
  • Track advisory updates for patch or workaround availability

Recommended action window: High priority (within 72h)

NVD description

Netatalk before 3.1.12 is vulnerable to an out of bounds write in dsi_opensess.c. This is due to lack of bounds checking on attacker controlled data. A remote unauthenticated attacker can leverage this vulnerability to achieve arbitrary code execution.

2.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-787

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

NONE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • debian_linux
  • diskstation_manager
  • netatalk
  • router_manager

Threat summary

  • Public PoC is present in monitored signal
  • 1 mentions across 1 observed day

What's happening

  • PoC mentioned or linked in 1 signal
  • Exploit: 1 classified signal
  • 1 total mentions across 1 day

Affected systems

Products
debian_linuxdiskstation_managernetatalkrouter_managerskynasvs960hdvs960hd_firmware

2 versions affected across 7 products

Deep dive

Activity timeline1 mentions / 1d
00111Mentions · 2026-03-11: 1PoC Mentioned / Linked · 2026-03-11: 103-11
Signal classification1 categories
Exploit
1100.0%
Referenced assets1 URL
By indicator
Full discourse1 post
  • wetw0rk@wetw0rk7
    Exploit

    Have you ever seen a CVE and want to turn it into an exploit but don't know how? Check out my latest tutorial where I turn CVE-2018-1160 into a fully functioning exploit! Video can be found here: https://youtu.be/SOZDiB7uhdI

    Post summary

    The user advertises a YouTube tutorial that claims to convert CVE‑2018‑1160 into a fully functioning exploit, but no code or detailed exploit steps are included in the text.

    561034330220.1K
    1.6K followersView on X
CPE platform detail7 entries

7 of 7 entries

PartVendorProductVersionTarget SWTarget HW
OSdebiandebian_linux9.0--
Appnetatalknetatalk---
OSsynologydiskstation_manager---
Appsynologyrouter_manager---
Appsynologyskynas---
HWsynologyvs960hd---
OSsynologyvs960hd_firmware---

Explore more