Vulnerabilities
Vulnerable Software
Openafs:  >> Openafs  >> 1.4.9  Security Vulnerabilities
OpenAFS before 1.4.15, 1.6.x before 1.6.5, and 1.7.x before 1.7.26 uses weak encryption (DES) for Kerberos keys, which makes it easier for remote attackers to obtain the service key.
CVSS Score
4.3
EPSS Score
0.002
Published
2013-11-05
Integer overflow in ptserver in OpenAFS before 1.6.2 allows remote attackers to cause a denial of service (crash) via a large list from the IdToName RPC, which triggers a heap-based buffer overflow.
CVSS Score
5.0
EPSS Score
0.021
Published
2013-03-14
Buffer overflow in certain client utilities in OpenAFS before 1.6.2 allows remote authenticated users to cause a denial of service (crash) and possibly execute arbitrary code via a long fileserver ACL entry.
CVSS Score
6.5
EPSS Score
0.028
Published
2013-03-14


Contact Us

Shodan ® - All rights reserved