Integer Underflow Vulnerability in Netatalk by Netatalk Project
CVE-2026-44069

3.4LOW

Key Information:

Vendor

Netatalk

Status
Vendor
CVE Published:
21 May 2026

What is CVE-2026-44069?

The integer underflow vulnerability in the volxlate function of Netatalk versions 3.0.0 through 4.4.2 enables a local privileged user to exploit crafted volume translation input. This can lead to limited data modifications, unauthorized information access, or a minor service disruption, highlighting the importance of addressing this security flaw promptly.

Affected Version(s)

Netatalk 3.0.0 <= 4.4.2

Netatalk 4.5.0

References

CVSS V3.1

Score:
3.4
Severity:
LOW
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Arjun Basnet from Securin
.