vulnerability

FreeBSD: VID-bcbd3fe0-2b46-11e6-ae88-002590263bf5 (CVE-2016-2860): openafs -- multiple vulnerabilities

Severity
4
CVSS
(AV:N/AC:L/Au:S/C:N/I:P/A:N)
Published
Jun 5, 2016
Added
Dec 10, 2025
Modified
Dec 10, 2025

Description

The OpenAFS development team reports: Foreign users can bypass access controls to create groups as system:administrators, including in the user namespace and the system: namespace. The contents of uninitialized memory are sent on the wire when clients perform certain RPCs. Depending on the RPC, the information leaked may come from kernel memory or userspace.

Solution

freebsd-upgrade-package-openafs
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.