CVE-2009-1250

7.8
CVSS v2.0 Base Score
3.98%
LOW RiskEPSS (90th percentile)

The cache manager in the client in OpenAFS 1.0 through 1.4.8 and 1.5.0 through 1.5.58, and IBM AFS 3.6 before Patch 19, on Linux allows remote attackers to cause a denial of service (system crash) via an RX response with a large error-code value that is interpreted as a pointer and dereferenced, related to use of the ERR_PTR macro.

Published: 4/9/2009
Modified: 6/16/2026
Back to CVE Lookup

Vulnerability Summary

CVSS v2 Score

7.8

AV:N/AC:L/Au:N/C:N/I:N/A:C

EPSS Score (Exploitation Probability)

3.98%LOW Exploitation Risk
90th percentile

This vulnerability has a 3.98% probability of being exploited in the next 30 days, ranking higher than 90% of all scored CVEs.

CWE Classification

Advertisement