CVE-2009-1251
Publication date 9 April 2009
Last updated 24 July 2024
Ubuntu priority
Heap-based buffer overflow in the cache manager in the client in OpenAFS 1.0 through 1.4.8 and 1.5.0 through 1.5.58 on Unix platforms allows remote attackers to cause a denial of service (system crash) or possibly execute arbitrary code via an RX response containing more data than specified in a request, related to use of XDR arrays.
Status
Package | Ubuntu Release | Status |
---|---|---|
openafs | 8.10 intrepid |
Fixed 1.4.7.dfsg1-6+ubuntu0.1
|
8.04 LTS hardy |
Fixed 1.4.6.dfsg1-2+ubuntu0.1
|
|
7.10 gutsy | Ignored end of life, was needs-triage | |
6.06 LTS dapper |
Fixed 1.4.1-2+ubuntu0.1
|
Patch details
Package | Patch details |
---|---|
openafs |