OpenAFS is a distributed file system that enables shared storage and data access across networked systems, occupying a specialized but strategically important role in research and enterprise infrastructure environments. The vendor's vulnerability profile concentrates in the single OpenAFS product and recurs through weakness classes reflecting the complexity of network protocols, buffer management, and authentication enforcement: exposure of sensitive information, buffer boundary violations, improper input validation, uninitialized resource use, and authentication bypass. These issues arise from the intersection of legacy codebase constraints and the stringent demands of a kernel-level distributed system operating across untrusted networks. Defenders deploying OpenAFS should prioritize inventory and network isolation of file servers, since the product's privileged role and long deployment lifecycles make patch cycles critical; live severity and exploitation figures are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Openafs over time
Signals from CVEs in this vendor scope (36 CVEs).
36 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-16947CRITICAL An issue was discovered in OpenAFS before 1.6.23 and 1.8.x before 1.8.2. The backup tape controller (butc) process accepts incoming RPCs but does not require (or allow for) authent | Sep 12, 2018 | 9.8 | 32 | NO | NO |
CVE-2003-0028HIGH Integer overflow in the xdrmem_getbytes() function, and possibly other functions, of XDR (external data representation) libraries derived from SunRPC, including libnsl, libc, glibc | Mar 25, 2003 | 7.5 | 28 | NO | NO |
CVE-2009-1251HIGH Heap-based buffer overflow in the cache manager in the client in OpenAFS 1.0 through 1.4.8 and 1.5.0 through 1.5.58 on Unix platforms allows remote attackers to cause a denial of s | Apr 9, 2009 | 10.0 | 27 | NO | NO |
CVE-2018-16949HIGH An issue was discovered in OpenAFS before 1.6.23 and 1.8.x before 1.8.2. Several data types used as RPC input variables were implemented as unbounded array types, limited only by t | Sep 12, 2018 | 7.5 | 26 | NO | NO |
CVE-2017-17432HIGH OpenAFS 1.x before 1.6.22 does not properly validate Rx ack packets, which allows remote attackers to cause a denial of service (system crash or application crash) via crafted fiel | Dec 6, 2017 | 7.5 | 26 | NO | NO |
CVE-2019-18602HIGH OpenAFS before 1.6.24 and 1.8.x before 1.8.5 is prone to an information disclosure vulnerability because uninitialized scalars are sent over the network to a peer. | Oct 29, 2019 | 7.5 | 25 | NO | NO |
CVE-2019-18601HIGH OpenAFS before 1.6.24 and 1.8.x before 1.8.5 is prone to denial of service from unserialized data access because remote attackers can make a series of VOTE_Debug RPC calls to crash | Oct 29, 2019 | 7.5 | 24 | NO | NO |
CVE-2011-0430HIGH Double free vulnerability in the Rx server process in OpenAFS 1.4.14, 1.4.12, 1.4.7, and possibly other versions allows remote attackers to cause a denial of service and execute ar | Feb 19, 2011 | 7.5 | 24 | NO | NO |
CVE-2018-16948HIGH An issue was discovered in OpenAFS before 1.6.23 and 1.8.x before 1.8.2. Several RPC server routines did not fully initialize their output variables before returning, leaking memor | Sep 12, 2018 | 7.5 | 23 | NO | NO |
CVE-2024-10397HIGH A malicious server can crash the OpenAFS cache manager and other client utilities, and possibly execute arbitrary code. | Nov 14, 2024 | 7.8 | 22 | NO | NO |
Signals from CVEs in this vendor scope (36 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Openafs.
Media articles that mention a CVE ID that affects a product developed by Openafs — matched by CVE ID, not by vendor name.