Download
| Alert*
oval:org.secpod.oval:def:1901208
The client in OpenAFS before 1.6.17 does not properly initialize the AFSStoreStatus, AFSStoreVolumeStatus, VldbListByAttributes, and ListAddrByAttributes structures, which might allow remote attackers to obtain sensitive memory information by leveraging access to RPC call traffic. oval:org.secpod.oval:def:53211 It was discovered that malformed jumbogram packets could result in denial of service against OpenAFS, an implementation of the Andrew distributed file system. |