Vyatta –
Linux & Open Source
Alternative to Cisco –
Advanced Routing,
Firewall, VPN, QoS..
Free Download ->
|
|
| |
|
| |
OpenAFS potential remote code execution vulnerability
| Package(s): | openafs |
CVE #(s): | |
| Created: | August 14, 2002 |
Updated: | August 14, 2002 |
| Description: |
The OpenAFS database server is subject to the
integer overflow bug in code derived from the SunRPC library.
This bug could be exploited to crash certain OpenAFS servers
(volserver, vlserver, ptserver, buserver) or to obtain unauthorized
root access to a host running one of these processes.
Felix von Leitner, discovered this
potential division by zero bug in
code derived from the SunRPC library which is used
in many places including openafs.
Updating now is recommended.
CERT/CC Vulnerability Note VU#192995 Integer
overflow in xdr_array() function when deserializing the XDR stream
|
| Alerts: |
|
( Log in to post comments)
|
|
|