PT-2019-15533 · Openafs · Openafs

Publicado

2019-10-29

·

Atualizado

2022-01-01

·

CVE-2019-18603

CVSS v3.1

5.9

Média

VetorAV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions OpenAFS versions prior to 1.6.24 OpenAFS versions 1.8.x prior to 1.8.5
Description The issue is related to information leakage under certain error conditions. This occurs because uninitialized RPC output variables are sent over the network to a peer.
Recommendations For OpenAFS versions prior to 1.6.24, update to version 1.6.24 or later. For OpenAFS versions 1.8.x prior to 1.8.5, update to version 1.8.5 or later.

Correção

Use of Uninitialized Resource

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2019-18603
DLA-1982-1

Produtos afetados

Openafs