DevSecOps Toolkit

CVE record

CVE-2026-44072

LOWCVSS 3

Netatalk 2.2.1 through 4.4.2 calls system() after a failed chdir() without properly handling the error condition, which allows a local privileged user to execute unintended commands or cause a minor service disruption under specific conditions.

Vulnerability metadata

Published
2026-05-21T02:46:22.807Z
Modified
2026-05-21T09:50:19.040Z
EPSS
Not available
Vector
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:N/I:L/A:L

References