Lucene search

K
freebsdFreeBSD87261557-A450-11E2-9898-001060E06FD4
HistoryApr 20, 2011 - 12:00 a.m.

FreeBSD -- Network ACL mishandling in mountd(8)

2011-04-2000:00:00
vuxml.freebsd.org
12

4.3 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

0.004 Low

EPSS

Percentile

73.4%

Problem Description:
While parsing the exports(5) table, a network mask in the form of
“-network=netname/prefixlength” results in an incorrect network mask
being computed if the prefix length is not a multiple of 8.
For example, specifying the ACL for an export as “-network
192.0.2.0/23” would result in a netmask of 255.255.127.0 being used
instead of the correct netmask of 255.255.254.0.

OSVersionArchitecturePackageVersionFilename
FreeBSDanynoarchfreebsd= 7.3UNKNOWN
FreeBSDanynoarchfreebsd< 7.3_5UNKNOWN

4.3 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

0.004 Low

EPSS

Percentile

73.4%

Related for 87261557-A450-11E2-9898-001060E06FD4