Improper Input Validation in Netatalk Affects Remote Data Modification
CVE-2026-7836
3.1LOW
What is CVE-2026-7836?
An improper calculation within the hextoint macro in Netatalk versions 2.0.0 to 4.4.2 allows a remote authenticated attacker to manipulate data through specially crafted hexadecimal input. This flaw arises from the software’s inappropriate handling of uppercase characters, potentially leading to limited data alterations.
Affected Version(s)
Netatalk 2.0.0 <= 4.4.2
Netatalk 4.5.0
