Description
OpenAFS before 1.6.24 and 1.8.x before 1.8.5 is prone to denial of service from unserialized data access because remote attackers can make a series of VOTE_Debug RPC calls to crash a database server within the SVOTE_Debug RPC handler.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-1982-1 | openafs security update |
EUVD |
EUVD-2019-8335 | OpenAFS before 1.6.24 and 1.8.x before 1.8.5 is prone to denial of service from unserialized data access because remote attackers can make a series of VOTE_Debug RPC calls to crash a database server within the SVOTE_Debug RPC handler. |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T01:54:14.490Z
Reserved: 2019-10-29T00:00:00.000Z
Link: CVE-2019-18601
No data.
Status : Modified
Published: 2019-10-29T19:15:19.500
Modified: 2024-11-21T04:33:20.743
Link: CVE-2019-18601
No data.
OpenCVE Enrichment
No data.
Weaknesses
Debian DLA
EUVD