PT-2026-42422 · Netatalk · Netatalk

Arjun Basnet

·

Published

2026-05-21

·

Updated

2026-05-21

·

CVE-2026-44066

CVSS v3.1

7.1

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:L
Name of the Vulnerable Software and Affected Versions Netatalk versions 3.1.0 through 4.4.2
Description Multiple heap out-of-bounds reads occur in the Spotlight RPC unmarshalling code. A remote authenticated attacker can exploit this to obtain sensitive information or cause a minor service disruption. Heap out-of-bounds read is a condition where the software reads data past the end of the intended memory buffer on the heap.
Recommendations Update to version 4.4.3.

Fix

Out of bounds Read

Weakness Enumeration

Related Identifiers

CVE-2026-44066

Affected Products

Netatalk