PT-2019-15532 · Openafs · Openafs
Andrew Deason
·
Publicado
2019-10-29
·
Atualizado
2022-01-01
·
CVE-2019-18602
CVSS v3.1
7.5
Alta
| Vetor | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
OpenAFS versions prior to 1.6.24
OpenAFS versions 1.8.x prior to 1.8.5
Description
The issue is related to an information disclosure problem. Uninitialized scalars are sent over the network to a peer, which can lead to sensitive information being exposed.
Recommendations
For OpenAFS versions prior to 1.6.24, update to version 1.6.24 or later.
For OpenAFS versions 1.8.x prior to 1.8.5, update to version 1.8.5 or later.
Correção
Use of Uninitialized Resource
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Openafs