[Forgot Password]
Login  Register Subscribe

30480

 
 

423868

 
 

252212

 
 

909

 
 

196748

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

netatalk: Unauthenticated remote code execution (CVE-2018-1160)

ID: oval:org.secpod.oval:def:1801672Date: (C)2020-01-25   (M)2023-10-05
Class: PATCHFamily: unix




Netatalk before 3.1.12 is vulnerable to an out of bounds write in dsi_opensess.c. This is due to lack of bounds checking on attacker controlled data. A remote unauthenticated attacker can leverage this vulnerability to achieve arbitrary code execution.mentioned in issue #9782 mentioned in issue #9783

Platform:
Alpine Linux 3.10
Product:
netatalk
Reference:
9781
CVE-2018-1160
CVE    1
CVE-2018-1160

© SecPod Technologies