PT-2019-20104 · Openafs · Openafs
Publicado
2019-12-01
·
Atualizado
2019-12-01
Nenhuma
Não há classificações de severidade ou métricas disponíveis. Quando houver, atualizaremos as informações correspondentes na página.
Name of the Vulnerable Software and Affected Versions
openafs versions prior to 1.8.5
Description
The issue is related to several security concerns, including skipping server OUT args on error, zeroing all server RPC args, and avoiding unlocked ubik currentTrans deref. These issues are addressed in the security-release 1.8.5. Additionally, updates to official version 1.8.4 and pre-releases 1.8.4pre2 and 1.8.3pre1 include various bug fixes and support for Linux-kernel versions.
Recommendations
For openafs versions prior to 1.8.5, update to version 1.8.5 or later to address the security concerns and include the various bug fixes and support for Linux-kernel versions.
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Openafs