CVE Vulnerabilities

CVE-2006-3123

Published: Aug 07, 2006 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
2.1 LOW
AV:L/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Multiple integer overflows in the (1) dodecrypt and (2) doencrypt functions in cfs_fh.c in cfsd in Matt Blaze Cryptographic File System (CFS) 1.4.1 before Debian GNU/Linux package 1.4.1-17 allow local users to cause a denial of service (daemon crash) by appending data to a file that is larger than 2 Gb.

Affected Software

NameVendorStart VersionEnd Version
Cryptographic_file_systemMatt_blaze1.4.1 (including)1.4.1 (including)
CfsUbuntudapper*
CfsUbuntudevel*
CfsUbuntugutsy*
CfsUbuntuhardy*
CfsUbuntuintrepid*
CfsUbuntujaunty*
CfsUbuntukarmic*

References