Lucene search

K
freebsdFreeBSD0BF376B7-CC6B-11E2-A424-14DAE938EC40
HistoryFeb 27, 2013 - 12:00 a.m.

net/openafs -- buffer overflow

2013-02-2700:00:00
vuxml.freebsd.org
27

CVSS2

6.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:S/C:P/I:P/A:P

EPSS

0.049

Percentile

92.8%

Nickolai Zeldovich reports:

An attacker with the ability to manipulate AFS directory ACLs may
crash the fileserver hosting that volume.
In addition, once a corrupt ACL is placed on a fileserver, its
existence may crash client utilities manipulating ACLs
on that server.

OSVersionArchitecturePackageVersionFilename
FreeBSDanynoarchopenafs< 1.6.2.*UNKNOWN

CVSS2

6.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:S/C:P/I:P/A:P

EPSS

0.049

Percentile

92.8%