İçeriğe atla
Noroxi

openafs kayıtları

openafs üreticisine ait 36 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
6
Düzeltme kaydı olan
%97,2
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

36 kayıt
  • CVE-2009-1251
    42Planlayın

    Heap-based buffer overflow in the cache manager in the client in OpenAFS 1.0 through 1.4.8 and 1.5.0 through 1.5.58 on Unix platforms allows

    KritikCVSS 10,0İstismar yokEPSS %6

    unix · unix8 Nis 2009

  • CVE-2018-16947
    40Planlayın

    An issue was discovered in OpenAFS before 1.6.23 and 1.8.x before 1.8.2.

    KritikCVSS 9,8İstismar yokEPSS %3

    openafs · openafs11 Eyl 2018

  • CVE-2003-0028
    35İzleyin

    Integer overflow in the xdrmem_getbytes() function, and possibly other functions, of XDR (external data representation) libraries derived fr

    YüksekCVSS 7,5İstismar yokEPSS %15

    gnu · glibc25 Mar 2003

  • CVE-2024-10394
    33İzleyin

    Theft of credentials in Unix client PAGs

    YüksekCVSS 8,4İstismar yokEPSS %0

    openafs · openafs14 Kas 2024

  • CVE-2009-1250
    32İzleyin

    The cache manager in the client in OpenAFS 1.0 through 1.4.8 and 1.5.0 through 1.5.58, and IBM AFS 3.6 before Patch 19, on Linux allows remo

    YüksekCVSS 7,8İstismar yokEPSS %4

    ibm · afs8 Nis 2009

  • CVE-2018-16949
    31İzleyin

    An issue was discovered in OpenAFS before 1.6.23 and 1.8.x before 1.8.2.

    YüksekCVSS 7,5İstismar yokEPSS %3

    openafs · openafs11 Eyl 2018

  • CVE-2017-17432
    31İzleyin

    OpenAFS 1.x before 1.6.22 does not properly validate Rx ack packets, which allows remote attackers to cause a denial of service (system cras

    YüksekCVSS 7,5İstismar yokEPSS %3

    openafs · openafs5 Ara 2017

  • CVE-2011-0430
    31İzleyin

    Double free vulnerability in the Rx server process in OpenAFS 1.4.14, 1.4.12, 1.4.7, and possibly other versions allows remote attackers to

    YüksekCVSS 7,5İstismar yokEPSS %3

    openafs · openafs18 Şub 2011

  • CVE-2007-1507
    31İzleyin

    The default configuration in OpenAFS 1.4.x before 1.4.4 and 1.5.x before 1.5.17 supports setuid programs within the local cell, which might

    YüksekCVSS 7,5İstismar yokEPSS %3

    openafs · openafs20 Mar 2007

  • CVE-2018-16948
    31İzleyin

    An issue was discovered in OpenAFS before 1.6.23 and 1.8.x before 1.8.2.

    YüksekCVSS 7,5İstismar yokEPSS %2

    openafs · openafs11 Eyl 2018

  • CVE-2015-8312
    31İzleyin

    Off-by-one error in afs_pioctl.c in OpenAFS before 1.6.16 might allow local users to cause a denial of service (memory overwrite and system

    YüksekCVSS 7,8İstismar yokEPSS %0

    openafs · openafs13 May 2016

  • CVE-2019-18602
    30İzleyin

    OpenAFS before 1.6.24 and 1.8.x before 1.8.5 is prone to an information disclosure vulnerability because uninitialized scalars are sent over

    YüksekCVSS 7,5İstismar yokEPSS %2

    openafs · openafs29 Eki 2019

  • CVE-2019-18601
    30İzleyin

    OpenAFS before 1.6.24 and 1.8.x before 1.8.5 is prone to denial of service from unserialized data access because remote attackers can make a

    YüksekCVSS 7,5İstismar yokEPSS %1

    openafs · openafs29 Eki 2019

  • CVE-2024-10397
    30İzleyin

    Preallocated buffer overflows in XDR responses

    YüksekCVSS 7,7İstismar yokEPSS %0

    openafs · openafs14 Kas 2024

  • CVE-2015-3283
    28İzleyin

    OpenAFS before 1.6.13 allows remote attackers to spoof bos commands via unspecified vectors.

    OrtaCVSS 6,8İstismar yokEPSS %2

    openafs · openafs12 Ağu 2015

  • CVE-2013-1794
    27İzleyin

    Buffer overflow in certain client utilities in OpenAFS before 1.6.2 allows remote authenticated users to cause a denial of service (crash) a

    OrtaCVSS 6,5İstismar yokEPSS %3

    openafs · openafs13 Mar 2013

  • CVE-2016-2860
    26İzleyin

    The newEntry function in ptserver/ptprocs.c in OpenAFS before 1.6.17 allows remote authenticated users from foreign Kerberos realms to bypas

    OrtaCVSS 6,5İstismar yokEPSS %2

    openafs · openafs13 May 2016

  • CVE-2024-10396
    26İzleyin

    Fileserver crash and possible information leak on StoreACL/FetchACL

    OrtaCVSS 6,5İstismar yokEPSS %1

    openafs · openafs14 Kas 2024

  • CVE-2019-18603
    23İzleyin

    OpenAFS before 1.6.24 and 1.8.x before 1.8.5 is prone to information leakage upon certain error conditions because uninitialized RPC output

    OrtaCVSS 5,9İstismar yokEPSS %1

    openafs · openafs29 Eki 2019

  • CVE-2016-9772
    22İzleyin

    OpenAFS 1.6.19 and earlier allows remote attackers to obtain sensitive directory information via vectors involving the (1) client cache part

    OrtaCVSS 5,3İstismar yokEPSS %2

    openafs · openafs6 Şub 2017

  • CVE-2013-1795
    21İzleyin

    Integer overflow in ptserver in OpenAFS before 1.6.2 allows remote attackers to cause a denial of service (crash) via a large list from the

    OrtaCVSS 5,0İstismar yokEPSS %3

    openafs · openafs13 Mar 2013

  • CVE-2014-0159
    21İzleyin

    Buffer overflow in the GetStatistics64 remote procedure call (RPC) in OpenAFS 1.4.8 before 1.6.7 allows remote attackers to cause a denial o

    OrtaCVSS 5,0İstismar yokEPSS %2

    openafs · openafs14 Nis 2014

  • CVE-2015-7763
    21İzleyin

    rx/rx.c in OpenAFS 1.5.75 through 1.5.78, 1.6.x before 1.6.15, and 1.7.x before 1.7.33 does not properly initialize padding at the end of an

    OrtaCVSS 5,0İstismar yokEPSS %2

    openafs · openafs6 Kas 2015

  • CVE-2015-7762
    21İzleyin

    rx/rx.c in OpenAFS before 1.6.15 and 1.7.x before 1.7.33 does not properly initialize the padding of a data structure when constructing an R

    OrtaCVSS 5,0İstismar yokEPSS %2

    openafs · openafs6 Kas 2015

  • CVE-2011-0431
    21İzleyin

    The afs_linux_lock function in afs/LINUX/osi_vnodeops.c in the kernel module in OpenAFS 1.4.14, 1.4.12, 1.4.7, and possibly other versions d

    OrtaCVSS 5,0İstismar yokEPSS %2

    openafs · openafs18 Şub 2011