Logo
vulnerabilityCVE-2026-44068
Name
CVE-2026-44068
Source
NVD ( link)Debian ( link)
Description
Incomplete sanitization of extended attribute (EA) path components in Netatalk 2.1.0 through 4.4.2 allows a remote authenticated attacker to write to files outside the intended metadata namespace via crafted EA names.
Published Date
Updated Date
Workaround
-
Advisories

Analysis#


Affected Component
Analysis
netatalk
Exploitable

Vulnerability Ratings#


7.6
CVSSv31
NaN
other

Others affected components#


Name
Project
Project Version
Version
Status
buildroot
master
4.4.3
Not Affected
openwrt
master
4.4.3-r1
Not Affected
openwrt
openwrt-25.12
4.4.3-r1
Not Affected