Security Advisory

CVE-2018-1160

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2018-12-20 21:00:00
Last updated 2026-02-13 19:35:35
Assigner tenable
State PUBLISHED

Description

Netatalk before 3.1.12 is vulnerable to an out of bounds write in dsi_opensess.c. This is due to lack of bounds checking on attacker controlled data. A remote unauthenticated attacker can leverage this vulnerability to achieve arbitrary code execution.