Netatalk
Don't miss out!
Thousands of developers use stack.watch to stay informed.Get an email whenever new security vulnerabilities are reported in Netatalk.
By the Year
In 2024 there have been 1 vulnerability in Netatalk with an average score of 9.8 out of ten. Last year Netatalk had 8 security vulnerabilities published. Right now, Netatalk is on track to have less security vulnerabilities in 2024 than it did last year. Interestingly, the average vulnerability score and the number of vulnerabilities for 2024 and last year was the same.
Year | Vulnerabilities | Average Score |
---|---|---|
2024 | 1 | 9.80 |
2023 | 8 | 9.80 |
2022 | 2 | 8.80 |
2021 | 1 | 8.80 |
2020 | 0 | 0.00 |
2019 | 0 | 0.00 |
2018 | 1 | 9.80 |
It may take a day or so for new Netatalk vulnerabilities to show up in the stats or in the list of recent security vulnerabilties. Additionally vulnerabilities may be tagged under a different product or component name.
Recent Netatalk Security Vulnerabilities
Netatalk before 3.2.1 has an off-by-one error and resultant heap-based buffer overflow
CVE-2024-38439
9.8 - Critical
- June 16, 2024
Netatalk before 3.2.1 has an off-by-one error and resultant heap-based buffer overflow because of setting ibuf[PASSWDLEN] to '\0' in FPLoginExt in login in etc/uams/uams_pam.c. 2.4.1 and 3.1.19 are also fixed versions.
Memory Corruption
A Type Confusion vulnerability was found in the Spotlight RPC functions in afpd in Netatalk 3.1.x before 3.1.17
CVE-2023-42464
9.8 - Critical
- September 20, 2023
A Type Confusion vulnerability was found in the Spotlight RPC functions in afpd in Netatalk 3.1.x before 3.1.17. When parsing Spotlight RPC packets, one encoded data structure is a key-value style dictionary where the keys are character strings, and the values can be any of the supported types in the underlying protocol. Due to a lack of type checking in callers of the dalloc_value_for_key() function, which returns the object associated with a key, a malicious actor may be able to fully control the value of the pointer and theoretically achieve Remote Code Execution on the host. This issue is similar to CVE-2023-34967.
Object Type Confusion
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Netatalk
CVE-2022-43634
9.8 - Critical
- March 29, 2023
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Netatalk. Authentication is not required to exploit this vulnerability. The specific flaw exists within the dsi_writeinit function. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a fixed-length heap-based buffer. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-17646.
Heap-based Buffer Overflow
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Netatalk
CVE-2022-23125
9.8 - Critical
- March 28, 2023
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Netatalk. Authentication is not required to exploit this vulnerability. The specific flaw exists within the copyapplfile function. When parsing the len element, the process does not properly validate the length of user-supplied data prior to copying it to a fixed-length stack-based buffer. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-15869.
Memory Corruption
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Netatalk
CVE-2022-23124
9.8 - Critical
- March 28, 2023
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Netatalk. Authentication is not required to exploit this vulnerability. The specific flaw exists within the get_finderinfo method. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of root. Was ZDI-CAN-15870.
Out-of-bounds Read
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Netatalk
CVE-2022-23123
9.8 - Critical
- March 28, 2023
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Netatalk. Authentication is not required to exploit this vulnerability. The specific flaw exists within the getdirparams method. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of root. Was ZDI-CAN-15830.
Out-of-bounds Read
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Netatalk
CVE-2022-23122
9.8 - Critical
- March 28, 2023
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Netatalk. Authentication is not required to exploit this vulnerability. The specific flaw exists within the setfilparams function. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a fixed-length stack-based buffer. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-15837.
Memory Corruption
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Netatalk
CVE-2022-23121
9.8 - Critical
- March 28, 2023
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Netatalk. Authentication is not required to exploit this vulnerability. The specific flaw exists within the parse_entries function. The issue results from the lack of proper error handling when parsing AppleDouble entries. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-15819.
Improper Handling of Exceptional Conditions
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Netatalk
CVE-2022-0194
9.8 - Critical
- March 28, 2023
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Netatalk. Authentication is not required to exploit this vulnerability. The specific flaw exists within the ad_addcomment function. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a fixed-length stack-based buffer. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-15876.
Memory Corruption
Netatalk through 3.1.13 has an afp_getappl heap-based buffer overflow resulting in code execution via a crafted .appl file
CVE-2022-45188
7.8 - High
- November 12, 2022
Netatalk through 3.1.13 has an afp_getappl heap-based buffer overflow resulting in code execution via a crafted .appl file. This provides remote root access on some platforms such as FreeBSD (used for TrueNAS).
Memory Corruption
The combination of primitives offered by SMB and AFP in their default configuration allows the arbitrary writing of files
CVE-2022-22995
9.8 - Critical
- March 25, 2022
The combination of primitives offered by SMB and AFP in their default configuration allows the arbitrary writing of files. By exploiting these combination of primitives, an attacker can execute arbitrary code.
insecure temporary file
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Synology DiskStation Manager
CVE-2021-31439
8.8 - High
- May 21, 2021
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Synology DiskStation Manager. Authentication is not required to exploit this vulnerablity. The specific flaw exists within the processing of DSI structures in Netatalk. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-12326.
Memory Corruption
Netatalk before 3.1.12 is vulnerable to an out of bounds write in dsi_opensess.c
CVE-2018-1160
9.8 - Critical
- December 20, 2018
Netatalk before 3.1.12 is vulnerable to an out of bounds write in dsi_opensess.c. This is due to lack of bounds checking on attacker controlled data. A remote unauthenticated attacker can leverage this vulnerability to achieve arbitrary code execution.
Memory Corruption