Integer overflow in Netatalk - #VU147250
Published: September 7, 2026
Vulnerability details
The vulnerability allows a remote attacker to bypass AppleDouble entry-length validation.
The vulnerability exists due to integer overflow in parse_entries() in libatalk/adouble/ad_open.c when parsing crafted AppleDouble headers. A remote attacker can place a crafted file, macOS ._ AppleDouble sidecar, or org.netatalk.Metadata extended attribute on a shared volume that afpd later parses to bypass AppleDouble entry-length validation.
Audited consumers perform additional validation, and no confidentiality, integrity, or availability impact has been substantiated from this defect alone.