PatchSiren

Openafs CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

MEDIUM Openafs CVE published 2017-02-06

CVE-2016-9772

CVE-2016-9772 is an information-disclosure issue in OpenAFS affecting version 1.6.19 and earlier. A remote attacker may be able to learn sensitive directory information from the client cache partition, the fileserver vice partition, or certain RPC responses. NVD rates the issue as medium severity with network access and no user interaction required.