Vulnerabilities
Vulnerable Software
Openafs:  >> Openafs  >> 1.2.13  Security Vulnerabilities
Integer overflow in ptserver in OpenAFS before 1.6.2 allows remote attackers to cause a denial of service (crash) via a large list from the IdToName RPC, which triggers a heap-based buffer overflow.
CVSS Score
5.0
EPSS Score
0.021
Published
2013-03-14
Buffer overflow in certain client utilities in OpenAFS before 1.6.2 allows remote authenticated users to cause a denial of service (crash) and possibly execute arbitrary code via a long fileserver ACL entry.
CVSS Score
6.5
EPSS Score
0.028
Published
2013-03-14
The cache manager in the client in OpenAFS 1.0 through 1.4.8 and 1.5.0 through 1.5.58, and IBM AFS 3.6 before Patch 19, on Linux allows remote attackers to cause a denial of service (system crash) via an RX response with a large error-code value that is interpreted as a pointer and dereferenced, related to use of the ERR_PTR macro.
CVSS Score
7.8
EPSS Score
0.058
Published
2009-04-09
Heap-based buffer overflow in the cache manager in the client in OpenAFS 1.0 through 1.4.8 and 1.5.0 through 1.5.58 on Unix platforms allows remote attackers to cause a denial of service (system crash) or possibly execute arbitrary code via an RX response containing more data than specified in a request, related to use of XDR arrays.
CVSS Score
10.0
EPSS Score
0.126
Published
2009-04-09


Contact Us

Shodan ® - All rights reserved