Denial of Service Vulnerability in Netatalk by Netatalk
CVE-2026-44054
6.5MEDIUM
What is CVE-2026-44054?
Netatalk versions 2.0.0 through 4.4.2 exhibit a vulnerability where AFP session tokens are generated from predictable process IDs. This flaw permits remote authenticated attackers to exploit the reconnect mechanism, potentially leading to a denial of service.
Affected Version(s)
Netatalk 2.0.0 <= 4.4.2
Netatalk 4.4.3
