Описание
Buffer overflow in the GetStatistics64 remote procedure call (RPC) in OpenAFS 1.4.8 before 1.6.7 allows remote attackers to cause a denial of service (crash) via a crafted statsVersion argument.
Ссылки
- Vendor Advisory
- Permissions RequiredThird Party Advisory
- Permissions RequiredThird Party Advisory
- Third Party Advisory
- Broken Link
- Issue TrackingRelease Notes
- Vendor Advisory
- Permissions RequiredThird Party Advisory
- Permissions RequiredThird Party Advisory
- Third Party Advisory
- Broken Link
- Issue TrackingRelease Notes
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:openafs:openafs:1.4.8:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.4.9:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.4.10:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.4.11:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.4.12:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.4.14:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.4.14.1:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.4.15:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.6.0:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.6.1:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.6.2:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.6.2.1:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.6.3:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.6.4:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.6.5:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.6.5.1:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.6.5.2:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.6.6:*:*:*:*:*:*:*
Конфигурация 2
cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*
EPSS
Процентиль: 80%
0.01389
Низкий
5 Medium
CVSS2
Дефекты
CWE-119
Связанные уязвимости
ubuntu
почти 12 лет назад
Buffer overflow in the GetStatistics64 remote procedure call (RPC) in OpenAFS 1.4.8 before 1.6.7 allows remote attackers to cause a denial of service (crash) via a crafted statsVersion argument.
debian
почти 12 лет назад
Buffer overflow in the GetStatistics64 remote procedure call (RPC) in ...
github
больше 3 лет назад
Buffer overflow in the GetStatistics64 remote procedure call (RPC) in OpenAFS 1.4.8 before 1.6.7 allows remote attackers to cause a denial of service (crash) via a crafted statsVersion argument.
EPSS
Процентиль: 80%
0.01389
Низкий
5 Medium
CVSS2
Дефекты
CWE-119