The afs_linux_lock function in afs/LINUX/osi_vnodeops.c in the kernel module in OpenAFS 1.4.14, 1.4.12, 1.4.7, and possibly other versions does not properly handle errors, which allows attackers to cause a denial of service via unknown vectors. NOTE: some of these details are obtained from third party information.
References
Link | Resource |
---|---|
http://secunia.com/advisories/43407 | Vendor Advisory |
http://secunia.com/advisories/43371 | Vendor Advisory |
http://www.debian.org/security/2011/dsa-2168 | |
http://www.vupen.com/english/advisories/2011/0411 | Vendor Advisory |
http://www.securityfocus.com/bid/46428 | |
http://www.vupen.com/english/advisories/2011/0410 | Vendor Advisory |
http://www.securitytracker.com/id?1025095 |
Configurations
Configuration 1 (hide)
|
Information
Published : 2011-02-18 17:00
Updated : 2011-03-10 19:50
NVD link : CVE-2011-0431
Mitre link : CVE-2011-0431
JSON object : View
CWE
CWE-20
Improper Input Validation
Products Affected
openafs
- openafs