CVE-2026-44075

Description

A flaw was found in Netatalk. A missing break statement in the DSI OpenSession processing allows a remote attacker to cause a minor service disruption. This occurs when a DSIOPT_ATTNQUANT switch case falls through into DSIOPT_SERVQUANT, leading to unintended session option handling via crafted DSI session options. This can result in a Denial of Service (DoS).

Statement

Red Hat Product Security has determined that this vulnerability does not affect any currently supported Red Hat product. This assessment may evolve based on further analysis and discovery. For more information about this vulnerability and the products it affects, please see the linked references.

Understanding the Weakness (CWE)

Other

Technical Impact: Alter Execution Logic

This weakness can cause unintended logic to be executed and other unexpected application behavior.

Frequently Asked Questions

Want to get errata notifications? Sign up here.