nfs software vulnerabilities
vulnerabilities.aspcode.net
Searching nfs software vulnerabilities
NFS allows attackers to read and write any file
specifying
|
attackers
|
system
|
allows
|
false
|
write
|
read
|
file
|
UID
|
NFS
|
any
|
NFS allows attackers to read and write any file on the system by specifying a false UID.
A superfluous NFS server is running, but it is
superfluous
|
importing
|
exporting
|
running
|
systems
|
server
|
file
|
any
|
NFS
|
but
|
not
|
A superfluous NFS server is running, but it is not importing or exporting any file systems.
NFS exports system-critical data to the world,
system-critical
|
password
|
exports
|
world
|
file
|
data
|
NFS
|
NFS exports system-critical data to the world, e.g. / or a password file.
The NFS service is running.
running
|
service
|
NFS
|
The NFS service is running.
NFS daemon (nfsd.exe) for Omni-NFS/X 6.1 allows
daemon
|
NFS
|
NFS daemon (nfsd.exe) for Omni-NFS/X 6.1 allows remote attackers to cause a denial of service (resource exhaustion) via certain packets, possibly with the Urgent (URG) flag set, to port 111.
netstation.navio-com.rte 1.1.0.1 configuration
netstationnavio-comrte
|
netstation.navio-com.rte 1.1.0.1 configuration script for Navio NC on IBM AIX exports /tmp over NFS as world-readable and world-writable.
Unknown vulnerability in NFS on Solaris 2.5.1 t
vulnerability
|
Solaris
|
Unknown
|
NFS
|
Unknown vulnerability in NFS on Solaris 2.5.1 through Solaris 9 allows an NFS client to cause a denial of service by killing the lockd daemon.
Off-by-one error in the xlog function of mountd
Off-by-one
|
function
|
package
|
mountd
|
error
|
utils
|
Linux
|
xlog
|
NFS
|
Off-by-one error in the xlog function of mountd in the Linux NFS utils package (nfs-utils) before 1.0.4 allows remote attackers to cause a denial of service and possibly execute arbitrary code via certain RPC requests to mountd that do not contain newlines.
Unknown vulnerability in NFS for SGI IRIX 6.5.2
vulnerability
|
Unknown
|
IRIX
|
SGI
|
NFS
|
Unknown vulnerability in NFS for SGI IRIX 6.5.21 and earlier may allow an NFS client to bypass read-only restrictions.
rpc.mountd in nfs-utils after 1.0.3 and before
nfs-utils
|
rpcmountd
|
after
|
rpc.mountd in nfs-utils after 1.0.3 and before 1.0.6 allows attackers to cause a denial of service (crash) via an NFS mount of a directory from a client whose reverse DNS lookup name is different from the forward lookup name.
Unknown vulnerability in Linux kernel 2.x may a
vulnerability
|
exported
|
Unknown
|
modify
|
kernel
|
group
|
files
|
users
|
Linux
|
allow
|
local
|
such
|
NFS
|
may
|
Unknown vulnerability in Linux kernel 2.x may allow local users to modify the group ID of files, such as NFS exported files in kernel 2.4.
rquotad in nfs-utils (rquota_server.c) before 1
nfs-utils
|
rquotad
|
rquotad in nfs-utils (rquota_server.c) before 1.0.6-r6 on 64-bit architectures does not properly perform an integer conversion, which leads to a stack-based buffer overflow and allows remote attackers to execute arbitrary code via a crafted NFS request.
Unknown vulnerability in Linux kernel 2.4.x, 2.
vulnerability
|
O_DIRECT
|
clients
|
service
|
Unknown
|
allows
|
denial
|
kernel
|
cause
|
Linux
|
via
|
26x
|
NFS
|
25x
|
24x
|
Unknown vulnerability in Linux kernel 2.4.x, 2.5.x, and 2.6.x allows NFS clients to cause a denial of service via O_DIRECT.
nfs2acl.c in the Linux kernel 2.6.14.4 does not
nfs2aclc
|
kernel
|
Linux
|
nfs2acl.c in the Linux kernel 2.6.14.4 does not check for MAY_SATTR privilege before setting access controls (ACL) on files on exported NFS filesystems, which allows remote attackers to bypass ACLs for readonly mounted NFS filesystems.
Buffer overflow in NFS readlink handling in the
readlink
|
handling
|
overflow
|
Kernel
|
Buffer
|
Linux
|
NFS
|
Buffer overflow in NFS readlink handling in the Linux Kernel 2.4 up to 2.4.31 allows remote NFS servers to cause a denial of service (crash) via a long symlink, which is not properly handled in (1) nfs2xdr.c or (2) nfs3xdr.c and causes a crash in the NFS client.
nfsd in FreeBSD 6.0 kernel allows remote attack
demonstrated
|
attackers
|
ProtoVer
|
service
|
request
|
crafted
|
FreeBSD
|
allows
|
kernel
|
denial
|
remote
|
cause
|
mount
|
suite
|
nfsd
|
test
|
via
|
NFS
|
nfsd in FreeBSD 6.0 kernel allows remote attackers to cause a denial of service via a crafted NFS mount request, as demonstrated by the ProtoVer NFS test suite.
The nlmclnt_mark_reclaim in clntlock.c in NFS l
nlmclnt_mark_reclaim
|
clntlockc
|
kernel
|
before
|
Linux
|
lockd
|
NFS
|
The nlmclnt_mark_reclaim in clntlock.c in NFS lockd in Linux kernel before 2.6.16 allows remote attackers to cause a denial of service (process crash) and deny access to NFS exports via unspecified vectors that trigger a kernel oops (null dereference) and a deadlock.
Race condition in the safe_open function in the
safe_open
|
condition
|
function
|
client
|
mail
|
Race
|
Mutt
|
Race condition in the safe_open function in the Mutt mail client 1.5.12 and earlier, when creating temporary files in an NFS filesystem, allows local users to overwrite arbitrary files due to limitations of the use of the O_EXCL flag on NFS filesystems.
Unspecified vulnerability in the NFS client mod
vulnerability
|
Unspecified
|
through
|
Solaris
|
before
|
client
|
module
|
NFS
|
Sun
|
Unspecified vulnerability in the NFS client module in Sun Solaris 8 through 10 before Thursday, May 24, 2007, when operating as an NFS server, allows remote attackers to cause a denial of service (crash) via certain Access Control List (acl) packets.
Unspecified vulnerability in the NFS server in
vulnerability
|
Unspecified
|
Solaris
|
before
|
server
|
NFS
|
Sun
|
Unspecified vulnerability in the NFS server in Sun Solaris 10 before Wednesday, June 13, 2007 allows remote attackers to cause a denial of service (system crash) via certain XDR data in NFS requests, probably related to processing of data by the xdr_bool and xdrmblk_getint32 functions.
Software vulnerabilities results 1 to 20 of 43
Page:
1
2
3
►