CVE-2015-3285: Openafs

Low severity, CVSS 2.1. EPSS: 0.4% chance of exploitation in the next 30 days.

The pioctl for the OSD FS command in OpenAFS before 1.6.13 uses the wrong pointer when writing the results of the RPC, which allows local users to cause a denial of service (memory corruption and kernel panic) via a crafted OSD FS command.

Affected products

  • Openafs Openafs: up to and including 1.6.12

Published 2015-08-12. Last modified 2026-06-17.