An authenticated user can provide a malformed ACL to the fileserver's StoreACL RPC, causing the fileserver to crash, possibly expose uninitialized memory, and possibly store garbage data in the audit log. Malformed ACLs provided in responses to client FetchACL RPCs can cause client processes to crash and possibly expose uninitialized memory into other ACLs stored on the server.
{
"binaries": [
{
"binary_name": "libafsauthent1",
"binary_version": "1.6.15-1ubuntu1.1"
},
{
"binary_name": "libafsrpc1",
"binary_version": "1.6.15-1ubuntu1.1"
},
{
"binary_name": "libkopenafs1",
"binary_version": "1.6.15-1ubuntu1.1"
},
{
"binary_name": "libopenafs-dev",
"binary_version": "1.6.15-1ubuntu1.1"
},
{
"binary_name": "libpam-openafs-kaserver",
"binary_version": "1.6.15-1ubuntu1.1"
},
{
"binary_name": "openafs-client",
"binary_version": "1.6.15-1ubuntu1.1"
},
{
"binary_name": "openafs-dbserver",
"binary_version": "1.6.15-1ubuntu1.1"
},
{
"binary_name": "openafs-fileserver",
"binary_version": "1.6.15-1ubuntu1.1"
},
{
"binary_name": "openafs-fuse",
"binary_version": "1.6.15-1ubuntu1.1"
},
{
"binary_name": "openafs-kpasswd",
"binary_version": "1.6.15-1ubuntu1.1"
},
{
"binary_name": "openafs-krb5",
"binary_version": "1.6.15-1ubuntu1.1"
},
{
"binary_name": "openafs-modules-dkms",
"binary_version": "1.6.15-1ubuntu1.1"
},
{
"binary_name": "openafs-modules-source",
"binary_version": "1.6.15-1ubuntu1.1"
}
]
}
{
"binaries": [
{
"binary_name": "libafsauthent2",
"binary_version": "1.8.0~pre5-1ubuntu1.2"
},
{
"binary_name": "libafsrpc2",
"binary_version": "1.8.0~pre5-1ubuntu1.2"
},
{
"binary_name": "libkopenafs2",
"binary_version": "1.8.0~pre5-1ubuntu1.2"
},
{
"binary_name": "libopenafs-dev",
"binary_version": "1.8.0~pre5-1ubuntu1.2"
},
{
"binary_name": "openafs-client",
"binary_version": "1.8.0~pre5-1ubuntu1.2"
},
{
"binary_name": "openafs-dbserver",
"binary_version": "1.8.0~pre5-1ubuntu1.2"
},
{
"binary_name": "openafs-fileserver",
"binary_version": "1.8.0~pre5-1ubuntu1.2"
},
{
"binary_name": "openafs-fuse",
"binary_version": "1.8.0~pre5-1ubuntu1.2"
},
{
"binary_name": "openafs-krb5",
"binary_version": "1.8.0~pre5-1ubuntu1.2"
},
{
"binary_name": "openafs-modules-dkms",
"binary_version": "1.8.0~pre5-1ubuntu1.2"
},
{
"binary_name": "openafs-modules-source",
"binary_version": "1.8.0~pre5-1ubuntu1.2"
}
]
}
{
"binaries": [
{
"binary_name": "libafsauthent2",
"binary_version": "1.8.4~pre1-1ubuntu2.4"
},
{
"binary_name": "libafsrpc2",
"binary_version": "1.8.4~pre1-1ubuntu2.4"
},
{
"binary_name": "libkopenafs2",
"binary_version": "1.8.4~pre1-1ubuntu2.4"
},
{
"binary_name": "libopenafs-dev",
"binary_version": "1.8.4~pre1-1ubuntu2.4"
},
{
"binary_name": "openafs-client",
"binary_version": "1.8.4~pre1-1ubuntu2.4"
},
{
"binary_name": "openafs-dbserver",
"binary_version": "1.8.4~pre1-1ubuntu2.4"
},
{
"binary_name": "openafs-fileserver",
"binary_version": "1.8.4~pre1-1ubuntu2.4"
},
{
"binary_name": "openafs-fuse",
"binary_version": "1.8.4~pre1-1ubuntu2.4"
},
{
"binary_name": "openafs-krb5",
"binary_version": "1.8.4~pre1-1ubuntu2.4"
},
{
"binary_name": "openafs-modules-dkms",
"binary_version": "1.8.4~pre1-1ubuntu2.4"
},
{
"binary_name": "openafs-modules-source",
"binary_version": "1.8.4~pre1-1ubuntu2.4"
}
]
}
{
"binaries": [
{
"binary_name": "libafsauthent2",
"binary_version": "1.8.10-2ubuntu1~22.04.2"
},
{
"binary_name": "libafsrpc2",
"binary_version": "1.8.10-2ubuntu1~22.04.2"
},
{
"binary_name": "libkopenafs2",
"binary_version": "1.8.10-2ubuntu1~22.04.2"
},
{
"binary_name": "libopenafs-dev",
"binary_version": "1.8.10-2ubuntu1~22.04.2"
},
{
"binary_name": "openafs-client",
"binary_version": "1.8.10-2ubuntu1~22.04.2"
},
{
"binary_name": "openafs-dbserver",
"binary_version": "1.8.10-2ubuntu1~22.04.2"
},
{
"binary_name": "openafs-fileserver",
"binary_version": "1.8.10-2ubuntu1~22.04.2"
},
{
"binary_name": "openafs-fuse",
"binary_version": "1.8.10-2ubuntu1~22.04.2"
},
{
"binary_name": "openafs-krb5",
"binary_version": "1.8.10-2ubuntu1~22.04.2"
},
{
"binary_name": "openafs-modules-dkms",
"binary_version": "1.8.10-2ubuntu1~22.04.2"
},
{
"binary_name": "openafs-modules-source",
"binary_version": "1.8.10-2ubuntu1~22.04.2"
}
]
}
{
"binaries": [
{
"binary_name": "libafsauthent2t64",
"binary_version": "1.8.10-2.1ubuntu3.4"
},
{
"binary_name": "libafsrpc2t64",
"binary_version": "1.8.10-2.1ubuntu3.4"
},
{
"binary_name": "libkopenafs2t64",
"binary_version": "1.8.10-2.1ubuntu3.4"
},
{
"binary_name": "libopenafs-dev",
"binary_version": "1.8.10-2.1ubuntu3.4"
},
{
"binary_name": "openafs-client",
"binary_version": "1.8.10-2.1ubuntu3.4"
},
{
"binary_name": "openafs-dbserver",
"binary_version": "1.8.10-2.1ubuntu3.4"
},
{
"binary_name": "openafs-fileserver",
"binary_version": "1.8.10-2.1ubuntu3.4"
},
{
"binary_name": "openafs-fuse",
"binary_version": "1.8.10-2.1ubuntu3.4"
},
{
"binary_name": "openafs-krb5",
"binary_version": "1.8.10-2.1ubuntu3.4"
},
{
"binary_name": "openafs-modules-dkms",
"binary_version": "1.8.10-2.1ubuntu3.4"
},
{
"binary_name": "openafs-modules-source",
"binary_version": "1.8.10-2.1ubuntu3.4"
}
]
}