Логотип exploitDog
bind:CVE-2018-16949
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2018-16949

Количество 4

Количество 4

ubuntu логотип

CVE-2018-16949

больше 7 лет назад

An issue was discovered in OpenAFS before 1.6.23 and 1.8.x before 1.8.2. Several data types used as RPC input variables were implemented as unbounded array types, limited only by the inherent 32-bit length field to 4 GB. An unauthenticated attacker could send, or claim to send, large input values and consume server resources waiting for those inputs, denying service to other valid connections.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2018-16949

больше 7 лет назад

An issue was discovered in OpenAFS before 1.6.23 and 1.8.x before 1.8.2. Several data types used as RPC input variables were implemented as unbounded array types, limited only by the inherent 32-bit length field to 4 GB. An unauthenticated attacker could send, or claim to send, large input values and consume server resources waiting for those inputs, denying service to other valid connections.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2018-16949

больше 7 лет назад

An issue was discovered in OpenAFS before 1.6.23 and 1.8.x before 1.8. ...

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-2x26-cf8j-qvpf

больше 3 лет назад

An issue was discovered in OpenAFS before 1.6.23 and 1.8.x before 1.8.2. Several data types used as RPC input variables were implemented as unbounded array types, limited only by the inherent 32-bit length field to 4 GB. An unauthenticated attacker could send, or claim to send, large input values and consume server resources waiting for those inputs, denying service to other valid connections.

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2018-16949

An issue was discovered in OpenAFS before 1.6.23 and 1.8.x before 1.8.2. Several data types used as RPC input variables were implemented as unbounded array types, limited only by the inherent 32-bit length field to 4 GB. An unauthenticated attacker could send, or claim to send, large input values and consume server resources waiting for those inputs, denying service to other valid connections.

CVSS3: 7.5
5%
Низкий
больше 7 лет назад
nvd логотип
CVE-2018-16949

An issue was discovered in OpenAFS before 1.6.23 and 1.8.x before 1.8.2. Several data types used as RPC input variables were implemented as unbounded array types, limited only by the inherent 32-bit length field to 4 GB. An unauthenticated attacker could send, or claim to send, large input values and consume server resources waiting for those inputs, denying service to other valid connections.

CVSS3: 7.5
5%
Низкий
больше 7 лет назад
debian логотип
CVE-2018-16949

An issue was discovered in OpenAFS before 1.6.23 and 1.8.x before 1.8. ...

CVSS3: 7.5
5%
Низкий
больше 7 лет назад
github логотип
GHSA-2x26-cf8j-qvpf

An issue was discovered in OpenAFS before 1.6.23 and 1.8.x before 1.8.2. Several data types used as RPC input variables were implemented as unbounded array types, limited only by the inherent 32-bit length field to 4 GB. An unauthenticated attacker could send, or claim to send, large input values and consume server resources waiting for those inputs, denying service to other valid connections.

CVSS3: 7.5
5%
Низкий
больше 3 лет назад

Уязвимостей на страницу