PT-2005-2697 · None+1 · Nfs+1
Published
2005-06-08
·
Updated
2008-09-05
·
CVE-2005-1724
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Mac OS X versions 10.4.x up to 10.4.1
Description
The issue concerns the NFS implementation, which does not properly enforce access restrictions based on the -network or -mask flags for a filesystem. As a result, remote attackers can bypass intended access controls and access the filesystem.
Recommendations
For Mac OS X versions 10.4.x up to 10.4.1, consider restricting access to the NFS service until a fix is available. As a temporary workaround, limit the exposure of the vulnerable NFS implementation by implementing additional network access controls to minimize the risk of unauthorized access.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Macos X
Nfs