VYPR

fileserver

by Openafs

CVEs (1)

  • CVE-2024-10396MedNov 14, 2024
    risk 0.42cvss 6.5epss 0.01

    An authenticated user can provide a malformed ACL to the fileserver's StoreACL RPC, causing the fileserver to crash, possibly expose uninitialized memory, and possibly store garbage data in the audit log. Malformed ACLs provided in responses to client FetchACL RPCs can cause…