USN-6786-1: Netatalk vulnerabilities
Published May 28, 2024
·Updated
It was discovered that Netatalk did not properly protect an SMB and AFP default configuration. A remote attacker could possibly use this issue to execute arbitrary code.
Affected Software
4 affected componentsFixes available
All of the following
ubuntu/netatalk<3.1.12~ds-9ubuntu0.22.04.3+esm1
3.1.12~ds-9ubuntu0.22.04.3+esm1
Ubuntu Ubuntu=22.04
All of the following
ubuntu/netatalk<3.1.12~ds-4ubuntu0.20.04.3+esm1
3.1.12~ds-4ubuntu0.20.04.3+esm1
Ubuntu Ubuntu=20.04
Event History
May 28, 2024
Advisory Published
via Ubuntu·12:00 AM
Frequently Asked Questions
1
What is the severity of USN-6786-1?
The severity of USN-6786-1 is critical due to the potential for remote code execution.
2
What vulnerable software is affected by USN-6786-1?
USN-6786-1 affects the Netatalk package in Ubuntu versions 20.04 and 22.04.
3
How do I fix USN-6786-1?
To fix USN-6786-1, update Netatalk to version 3.1.12~ds-4ubuntu0.20.04.3+esm1 for Ubuntu 20.04 or 3.1.12~ds-9ubuntu0.22.04.3+esm1 for Ubuntu 22.04.
4
Can USN-6786-1 be exploited remotely?
Yes, USN-6786-1 can be exploited remotely due to improper protection in the SMB and AFP default configuration.
5
What actions should I take after discovering USN-6786-1?
After discovering USN-6786-1, immediately apply the relevant updates to mitigate the vulnerability.