Linux nfsd Remote Buffer Overflow...

- AV AC AU C I A
发布: 1999-11-09
修订: 2025-04-13

A remotely exploitable buffer overflow vulnerability was found in versions of Linux nfsd known to ship with Debian Linux 2.1 and RedHat Linux 5.2. When they were fixed in the respective distributions/versions, no vulnerability information was published by the vendors. The vulnerability was in removal of long directory paths on a mounted nfs share. The length of the string holding the directory name which was to be removed was not checked and the buffer holding it could be overflowed, allowing execution of arbitrary code on the nfs server as root. A consequence of this being exploited is remote root compromise.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息