Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
| Link | Providers |
|---|---|
| https://netatalk.io/security/CVE-2026-44075 |
|
Thu, 21 May 2026 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 21 May 2026 10:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Netatalk
Netatalk netatalk |
|
| Vendors & Products |
Netatalk
Netatalk netatalk |
Thu, 21 May 2026 09:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A missing break statement in DSI OpenSession processing in Netatalk 1.5.0 through 4.4.2 causes a DSIOPT_ATTNQUANT switch case to fall through into DSIOPT_SERVQUANT, resulting in unintended session option handling that may allow a remote attacker to cause a minor service disruption via crafted DSI session options. | |
| Title | Missing break in DSI OpenSession | |
| Weaknesses | CWE-484 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: securin
Published:
Updated: 2026-05-21T12:50:52.921Z
Reserved: 2026-05-05T07:25:20.197Z
Link: CVE-2026-44075
Updated: 2026-05-21T12:50:49.189Z
Status : Deferred
Published: 2026-05-21T09:16:29.770
Modified: 2026-06-17T10:50:15.843
Link: CVE-2026-44075
No data.
OpenCVE Enrichment
Updated: 2026-05-21T11:00:11Z