Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

Debian LTS: DLA-3584-1 Moderate: Netatalk Remote Code Execution Threat

debian lts
Calendar Grey September 25, 2023
Dist Debian Esm H88
A type confusion flaw in Netatalk enables potential remote code execution. It is advisable to update to safeguard system integrity.
Florent Saudel and Arnaud Gatignol discovered a Type Confusion vulnerability in the Spotlight RPC functions in afpd in Netatalk

Summary

For Debian 10 buster, this problem has been fixed in version
3.1.12~ds-3+deb10u4.

We recommend that you upgrade your netatalk packages.

For the detailed security status of netatalk please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/source-package/netatalk

Further information about Debian LTS security advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://wiki.debian.org/LTS


Severity
important
Lowest
Low
Medium
High
Critical

Package: netatalk
Version: 3.1.12~ds-3+deb10u4
CVE ID: CVE-2023-42464
Debian Bug: 1052087

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here