CVE-2013-1795

Integer overflow in ptserver in OpenAFS before 1.6.2 allows remote attackers to cause a denial of service (crash) via a large list from the IdToName RPC, which triggers a heap-based buffer overflow.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:openafs:openafs:*:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.10:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.11:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.12:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.13:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.14:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.15:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.16:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.17:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.18:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.19:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.20:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.21:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.22:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.23:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.24:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.25:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.26:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.27:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.28:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.29:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.30:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.31:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.32:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.33:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.34:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.35:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.36:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.37:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.38:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.39:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.50:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.51:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.52:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.53:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.54:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.55:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.56:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.57:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.58:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.59:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.60:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.61:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.62:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.63:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.64:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.65:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.66:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.67:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.68:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.69:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.70:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.71:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.72:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.73:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.74:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.75:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.76:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.77:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.5.78:*:*:*:*:*:*:*
cpe:2.3:a:openafs:openafs:1.6.0:*:*:*:*:*:*:*

History

21 Nov 2024, 01:50

Type Values Removed Values Added
References () http://secunia.com/advisories/52342 - Permissions Required, Third Party Advisory () http://secunia.com/advisories/52342 - Permissions Required, Third Party Advisory
References () http://secunia.com/advisories/52480 - Permissions Required, Third Party Advisory () http://secunia.com/advisories/52480 - Permissions Required, Third Party Advisory
References () http://www.debian.org/security/2013/dsa-2638 - () http://www.debian.org/security/2013/dsa-2638 -
References () http://www.mandriva.com/security/advisories?name=MDVSA-2014:244 - Broken Link () http://www.mandriva.com/security/advisories?name=MDVSA-2014:244 - Broken Link
References () http://www.openafs.org/pages/security/OPENAFS-SA-2013-002.txt - Vendor Advisory () http://www.openafs.org/pages/security/OPENAFS-SA-2013-002.txt - Vendor Advisory
References () http://www.securityfocus.com/bid/58300 - Third Party Advisory, VDB Entry () http://www.securityfocus.com/bid/58300 - Third Party Advisory, VDB Entry
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/82585 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/82585 -

Information

Published : 2013-03-14 03:13

Updated : 2024-11-21 01:50


NVD link : CVE-2013-1795

Mitre link : CVE-2013-1795

CVE.ORG link : CVE-2013-1795


JSON object : View

Products Affected

openafs

  • openafs
CWE
CWE-189

Numeric Errors