ZeroHour

CVE-2019-18603

CVSS 3.1
5.9 medium
EPSS
1%p66
Published
()
Modified
Description

OpenAFS before 1.6.24 and 1.8.x before 1.8.5 is prone to information leakage upon certain error conditions because uninitialized RPC output variables are sent over the network to a peer.

Vendors
openafsdebian
Products
openafs, debian linux
Weakness
CWE-908
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.