DescriptionRace condition in fileserver in OpenAFS 1.3.50 through 1.4.5 and 1.5.0 through 1.5.27 allows remote attackers to cause a denial of service (daemon crash) by simultaneously acquiring and giving back file callbacks, which causes the handler for the GiveUpAllCallBacks RPC to perform linked-list operations without the host_glock lock.
Overall state of this security issue: Resolved
This issue is currently rated as having moderate severity.
|National Vulnerability Database|
SUSE Security Advisories:
- SUSE-SR:2008:002, published Fri, 25 Jan 2008 16:00:00 +0000
SUSE Timeline for this CVECVE page created: Tue Jul 9 16:49:32 2013
CVE page last modified: Fri Oct 7 12:45:39 2022