mount software vulnerabilities
vulnerabilities.aspcode.net
Searching mount software vulnerabilities
suidperl in Linux Perl does not check the nosui
mountable
|
allowing
|
suidperl
|
placing
|
systems
|
option
|
access
|
setuid
|
CD-ROM
|
floppy
|
system
|
nosuid
|
script
|
users
|
mount
|
check
|
Linux
|
local
|
does
|
Perl
|
gain
|
file
|
root
|
disk
|
not
|
suidperl in Linux Perl does not check the nosuid mount option on file systems, allowing local users to gain root access by placing a setuid script in a mountable file system, e.g. a CD-ROM or floppy disk.
rpc.mountd on Linux, Ultrix, and possibly other
attempting
|
existence
|
determine
|
attackers
|
different
|
generates
|
depending
|
operating
|
rpcmountd
|
possibly
|
messages
|
systems
|
whether
|
remote
|
Ultrix
|
allows
|
exists
|
server
|
error
|
mount
|
other
|
Linux
|
which
|
file
|
not
|
rpc.mountd on Linux, Ultrix, and possibly other operating systems, allows remote attackers to determine the existence of a file on the server by attempting to mount that file, which generates different error messages depending on whether the file exists or not.
Vulnerability in union file system in FreeBSD 2
Vulnerability
|
operating
|
possibly
|
earlier
|
systems
|
service
|
FreeBSD
|
allows
|
denial
|
system
|
users
|
cause
|
union
|
other
|
local
|
file
|
Vulnerability in union file system in FreeBSD 2.2 and earlier, and possibly other operating systems, allows local users to cause a denial of service (system reload) via a series of certain mount_union commands.
Cisco 340-series Aironet access point using fir
340-series
|
firmware
|
Aironet
|
access
|
Cisco
|
using
|
point
|
Cisco 340-series Aironet access point using firmware 11.01 does not use 6 of the 24 available IV bits for WEP encryption, which makes it easier for remote attackers to mount brute force attacks.
QNX 2.4 allows a local user to read arbitrary f
arbitrary
|
accessing
|
partition
|
directly
|
/fs-dos
|
allows
|
mount
|
point
|
files
|
local
|
disk
|
read
|
user
|
QNX
|
FAT
|
QNX 2.4 allows a local user to read arbitrary files by directly accessing the mount point for the FAT disk partition, e.g. /fs-dos.
Buffer overflow in the fscache_setup function o
fscache_setup
|
privileges
|
cachefsd
|
argument
|
overflow
|
function
|
Solaris
|
Buffer
|
allows
|
mount
|
local
|
users
|
root
|
long
|
gain
|
via
|
Buffer overflow in the fscache_setup function of cachefsd in Solaris 2.6, 7, and 8 allows local users to gain root privileges via a long mount argument.
rc.M in Slackware 9.0 calls quotacheck with the
security-relevant
|
filesystem
|
quotacheck
|
remounted
|
Slackware
|
possibly
|
nosuid
|
option
|
noexec
|
causes
|
flags
|
nodev
|
mount
|
calls
|
which
|
reset
|
such
|
rcM
|
rc.M in Slackware 9.0 calls quotacheck with the -M option, which causes the filesystem to be remounted and possibly reset security-relevant mount flags such as nosuid, nodev, and noexec.
Multiple integer overflow vulnerabilities in Et
vulnerabilities
|
Ethereal
|
overflow
|
Multiple
|
integer
|
Multiple integer overflow vulnerabilities in Ethereal 0.9.11 and earlier allow remote attackers to cause a denial of service and possibly execute arbitrary code via the (1) Mount and (2) PPP dissectors.
Unknown vulnerability in rpc.mountd SGI IRIX 6.
vulnerability
|
rpcmountd
|
Unknown
|
IRIX
|
SGI
|
Unknown vulnerability in rpc.mountd SGI IRIX 6.5.18 through 6.5.22 allows remote attackers to mount from unprivileged ports even with the -n option disabled.
Untrusted execution path vulnerability in the P
vulnerability
|
execution
|
Untrusted
|
daemon
|
PPPoE
|
path
|
Untrusted execution path vulnerability in the PPPoE daemon (PPPoEd) in QNX RTP 6.1 allows local users to execute arbitrary programs by modifying the PATH environment variable to point to a malicious mount program.
Unknown vulnerability in the nfs_mount call in
vulnerability
|
nfs_mount
|
Unknown
|
call
|
Mac
|
Unknown vulnerability in the nfs_mount call in Mac OS X 10.3.9 and earlier allows local users to gain privileges via crafted arguments.
The HFS and HFS+ (hfsplus) modules in Linux 2.6
HFS+
|
HFS
|
The HFS and HFS+ (hfsplus) modules in Linux 2.6 allow attackers to cause a denial of service (oops) by using hfsplus to mount a filesystem that is not hfsplus.
Buffer overflow in the realpath function in nfs
nfs-server
|
rpcmountd
|
overflow
|
function
|
realpath
|
through
|
Buffer
|
Linux
|
used
|
SUSE
|
Buffer overflow in the realpath function in nfs-server rpc.mountd, as used in SUSE Linux 9.1 through 10.0, allows local users to execute arbitrary code via unspecified vectors involving mount requests and symlinks.
nfsd in FreeBSD 6.0 kernel allows remote attack
demonstrated
|
attackers
|
ProtoVer
|
service
|
request
|
crafted
|
FreeBSD
|
allows
|
kernel
|
denial
|
remote
|
cause
|
mount
|
suite
|
nfsd
|
test
|
via
|
NFS
|
nfsd in FreeBSD 6.0 kernel allows remote attackers to cause a denial of service via a crafted NFS mount request, as demonstrated by the ProtoVer NFS test suite.
Unspecified vulnerability in the MOUNT dissecto
vulnerability
|
Unspecified
|
dissector
|
Wireshark
|
MOUNT
|
Unspecified vulnerability in the MOUNT dissector in Wireshark (aka Ethereal) 0.9.4 to 0.99.0 allows remote attackers to cause a denial of service (memory consumption) via unspecified vectors.
Rocks Clusters 4.1 and earlier allows local use
privileges
|
backticks
|
commands
|
enclosed
|
Clusters
|
escaped
|
earlier
|
allows
|
Rocks
|
local
|
users
|
gain
|
via
|
Rocks Clusters 4.1 and earlier allows local users to gain privileges via commands enclosed with escaped backticks (\`) in an argument to the (1) mount-loop (mount-loop.c) or (2) umount-loop (umount-loop.c) command, which is not filtered in a system function call.
Sun Solaris 10 allows local users to cause a de
Solaris
|
service
|
denial
|
allows
|
cause
|
local
|
users
|
Sun
|
Sun Solaris 10 allows local users to cause a denial of service (panic) via unspecified vectors involving (1) the /net mount point and (2) the "-hosts" map in a mount point.
The compat_sys_mount function in fs/compat.c in
compat_sys_mount
|
fs/compatc
|
function
|
kernel
|
Linux
|
The compat_sys_mount function in fs/compat.c in Linux kernel 2.6.20 and earlier allows local users to cause a denial of service (NULL pointer dereference and oops) by mounting a smbfs file system in compatibility mode ("mount -t smbfs").
ScramDisk 4 Linux before 1.0-1 does not perform
privileges
|
permission
|
container
|
ScramDisk
|
directory
|
perform
|
points
|
system
|
allows
|
before
|
checks
|
users
|
point
|
using
|
which
|
mount
|
local
|
Linux
|
10-1
|
gain
|
does
|
not
|
ScramDisk 4 Linux before 1.0-1 does not perform permission checks on mount points, which allows local users to gain privileges by using a system directory as a mount point for a container.
Buffer overflow in the NFS mount daemon (XNFS.N
overflow
|
daemon
|
Buffer
|
mount
|
NFS
|
Buffer overflow in the NFS mount daemon (XNFS.NLM) in Novell NetWare 6.5 SP6, and probably earlier, allows remote attackers to cause a denial of service (abend) via a long path in a mount request.
Software vulnerabilities results 1 to 20 of 36
Page:
1
2
►