Dead Bounds Check Vulnerability in Netatalk from Inventiv
CVE-2026-44057
3.1LOW
What is CVE-2026-44057?
A dead bounds check in the Spotlight RPC unmarshaller within Netatalk versions 3.0.0 through 4.4.2 creates an ineffective bounds protection scenario. This weakness allows a remote authenticated attacker to exploit crafted Spotlight RPC requests, potentially gaining limited access to sensitive information. Users of the affected versions should implement mitigations to reduce exposure.
Affected Version(s)
Netatalk 3.0.0 <= 4.4.2
Netatalk 4.4.3
