2023-04-24 12:24:31 +02:00
{
"id" : "CVE-2014-0159" ,
"sourceIdentifier" : "secalert@redhat.com" ,
"published" : "2014-04-14T15:09:05.990" ,
2024-11-22 19:15:24 +00:00
"lastModified" : "2024-11-21T02:01:30.177" ,
"vulnStatus" : "Modified" ,
2024-12-08 03:06:42 +00:00
"cveTags" : [ ] ,
2023-04-24 12:24:31 +02:00
"descriptions" : [
{
"lang" : "en" ,
"value" : "Buffer overflow in the GetStatistics64 remote procedure call (RPC) in OpenAFS 1.4.8 before 1.6.7 allows remote attackers to cause a denial of service (crash) via a crafted statsVersion argument."
} ,
{
"lang" : "es" ,
"value" : "Desbordamiento de buffer en la llamada de procedimientos remotos (RPC) GetStatistics64 en OpenAFS 1.4.8 anterior a 1.6.7 permite a atacantes remotos causar una denegaci\u00f3n de servicio (ca\u00edda) a trav\u00e9s de un argumento statsVersion manipulado."
}
] ,
"metrics" : {
"cvssMetricV2" : [
{
"source" : "nvd@nist.gov" ,
"type" : "Primary" ,
"cvssData" : {
"version" : "2.0" ,
"vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P" ,
2024-11-22 19:15:24 +00:00
"baseScore" : 5.0 ,
2023-04-24 12:24:31 +02:00
"accessVector" : "NETWORK" ,
"accessComplexity" : "LOW" ,
"authentication" : "NONE" ,
"confidentialityImpact" : "NONE" ,
"integrityImpact" : "NONE" ,
2024-11-22 19:15:24 +00:00
"availabilityImpact" : "PARTIAL"
2023-04-24 12:24:31 +02:00
} ,
"baseSeverity" : "MEDIUM" ,
"exploitabilityScore" : 10.0 ,
"impactScore" : 2.9 ,
"acInsufInfo" : false ,
"obtainAllPrivilege" : false ,
"obtainUserPrivilege" : false ,
"obtainOtherPrivilege" : false ,
"userInteractionRequired" : false
}
]
} ,
"weaknesses" : [
{
"source" : "nvd@nist.gov" ,
"type" : "Primary" ,
"description" : [
{
"lang" : "en" ,
"value" : "CWE-119"
}
]
}
] ,
"configurations" : [
{
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openafs:openafs:1.4.8:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "38D14A4C-D467-431A-A223-9383FD94EB12"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openafs:openafs:1.4.9:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "E2E01F11-9AAD-45BA-87A0-F718933CBF98"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openafs:openafs:1.4.10:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "ED2A139B-2C74-420C-8730-0832D5536A22"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openafs:openafs:1.4.11:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "AB522B81-9FD9-4A1F-A04D-FB319A0252ED"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openafs:openafs:1.4.12:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "77998ED3-15AE-4547-AAF3-596F4DC7C399"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openafs:openafs:1.4.14:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "722F4AB9-D515-4616-996E-37C2A6007AA6"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openafs:openafs:1.4.14.1:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "0798F6F7-6717-4BE1-9AF6-B15FB2A4D888"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openafs:openafs:1.4.15:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "997D6E5C-933D-4747-BD62-C66BC4E2B3E8"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openafs:openafs:1.6.0:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "A8A71A1B-DCDC-4E72-9C46-49919E4F372C"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openafs:openafs:1.6.1:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "7150CE0E-A1EC-41EB-AD71-5B6C87289EEB"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openafs:openafs:1.6.2:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "7EEFFEE0-C867-40F1-93F4-239EF1C6E2AF"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openafs:openafs:1.6.2.1:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "BBD16CAA-1DF0-4BFC-AB76-AD06329080D1"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openafs:openafs:1.6.3:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "3AC2FFCF-BC84-43FF-8162-C796D3E43317"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openafs:openafs:1.6.4:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "47FED822-5D5F-4299-9E17-865F9ADDCB09"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openafs:openafs:1.6.5:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "FED301E1-B19C-49D7-AF5D-20301BA53E60"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openafs:openafs:1.6.5.1:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "FA403EE6-31FB-47A3-BDBE-72A4277A4EC9"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openafs:openafs:1.6.5.2:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "58385FBA-632C-49B4-8AD0-9B3585845955"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openafs:openafs:1.6.6:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "3E7D0515-EC70-4B4C-97BE-CA114CA34B2E"
}
]
}
]
} ,
{
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "16F59A04-14CF-49E2-9973-645477EA09DA"
}
]
}
]
}
] ,
"references" : [
{
"url" : "http://openafs.org/pages/security/OPENAFS-SA-2014-001.txt" ,
"source" : "secalert@redhat.com" ,
"tags" : [
"Vendor Advisory"
]
} ,
2024-04-04 08:46:00 +00:00
{
"url" : "http://secunia.com/advisories/57779" ,
"source" : "secalert@redhat.com" ,
"tags" : [
"Permissions Required" ,
"Third Party Advisory"
]
} ,
{
"url" : "http://secunia.com/advisories/57832" ,
"source" : "secalert@redhat.com" ,
"tags" : [
"Permissions Required" ,
"Third Party Advisory"
]
} ,
2023-04-24 12:24:31 +02:00
{
"url" : "http://www.debian.org/security/2014/dsa-2899" ,
"source" : "secalert@redhat.com" ,
"tags" : [
"Third Party Advisory"
]
} ,
{
"url" : "http://www.mandriva.com/security/advisories?name=MDVSA-2014:244" ,
"source" : "secalert@redhat.com" ,
"tags" : [
"Broken Link"
]
} ,
{
"url" : "http://www.openafs.org/frameset/dl/openafs/1.6.7/ChangeLog" ,
"source" : "secalert@redhat.com" ,
"tags" : [
"Issue Tracking" ,
"Release Notes"
]
2024-11-22 19:15:24 +00:00
} ,
{
"url" : "http://openafs.org/pages/security/OPENAFS-SA-2014-001.txt" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108" ,
"tags" : [
"Vendor Advisory"
]
} ,
{
"url" : "http://secunia.com/advisories/57779" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108" ,
"tags" : [
"Permissions Required" ,
"Third Party Advisory"
]
} ,
{
"url" : "http://secunia.com/advisories/57832" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108" ,
"tags" : [
"Permissions Required" ,
"Third Party Advisory"
]
} ,
{
"url" : "http://www.debian.org/security/2014/dsa-2899" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108" ,
"tags" : [
"Third Party Advisory"
]
} ,
{
"url" : "http://www.mandriva.com/security/advisories?name=MDVSA-2014:244" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108" ,
"tags" : [
"Broken Link"
]
} ,
{
"url" : "http://www.openafs.org/frameset/dl/openafs/1.6.7/ChangeLog" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108" ,
"tags" : [
"Issue Tracking" ,
"Release Notes"
]
2023-04-24 12:24:31 +02:00
}
]
}