PT-2018-13932 · Freebsd · Freebsd

Publicado

2018-12-04

·

Atualizado

2018-12-31

·

CVE-2018-17159

CVSS v2.0

7.8

Alta

VetorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions FreeBSD versions prior to 11.2-STABLE(r340854) and prior to 11.2-RELEASE-p5
Description The issue is related to the NFS server, which lacks a bounds check in the READDIRPLUS NFS request. This allows unprivileged remote users with access to the NFS server to cause resource exhaustion by forcing the server to allocate an arbitrarily large memory allocation.
Recommendations For versions prior to 11.2-STABLE(r340854), update to 11.2-STABLE(r340854) or later. For versions prior to 11.2-RELEASE-p5, update to 11.2-RELEASE-p5 or later.

Correção

Resource Exhaustion

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2018-17159

Produtos afetados

Freebsd