Stilgar
14th July 2003, 19:18
Complete information about this errata can be found at the following location:
https://rhn.redhat.com/network/errata/errata_details.pxt?eid=1791
Security Advisory - RHSA-2003:206-05
------------------------------------------------------------------------------
Summary:
Updated nfs-utils packages fix denial of service vulnerability
Updated nfs-utils packages are available that fix a remotely exploitable
Denial of Service vulnerability.
Description:
The nfs-utils package provides a daemon for the kernel NFS server and
related tools.
Janusz Niewiadomski found a buffer overflow bug in nfs-utils version 1.0.3
and earlier. This bug could be exploited by an attacker, causing a remote
Denial of Service (crash). It is not believed that this bug could lead to
remote arbitrary code execution.
Users are advised to update to these erratum packages, which contain a
backported security patch supplied by the nfs-utils maintainers and are not
vulnerable to this issue.
References:
http://cvs.sourceforge.net/cgi-bin/viewcvs.cgi/nfs/nfs-utils/ChangeLog?rev=1.207&content-type=text/vnd.viewcvs-markup
https://rhn.redhat.com/network/errata/errata_details.pxt?eid=1791
Security Advisory - RHSA-2003:206-05
------------------------------------------------------------------------------
Summary:
Updated nfs-utils packages fix denial of service vulnerability
Updated nfs-utils packages are available that fix a remotely exploitable
Denial of Service vulnerability.
Description:
The nfs-utils package provides a daemon for the kernel NFS server and
related tools.
Janusz Niewiadomski found a buffer overflow bug in nfs-utils version 1.0.3
and earlier. This bug could be exploited by an attacker, causing a remote
Denial of Service (crash). It is not believed that this bug could lead to
remote arbitrary code execution.
Users are advised to update to these erratum packages, which contain a
backported security patch supplied by the nfs-utils maintainers and are not
vulnerable to this issue.
References:
http://cvs.sourceforge.net/cgi-bin/viewcvs.cgi/nfs/nfs-utils/ChangeLog?rev=1.207&content-type=text/vnd.viewcvs-markup