PT-2010-3640 · Freebsd · Freebsd

Argp

+1

·

Published

2010-05-28

·

Updated

2012-11-06

·

CVE-2010-2020

CVSS v2.0

6.9

Medium

VectorAV:L/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions FreeBSD versions 7.2 through 8.1-PRERELEASE
Description The issue concerns a lack of validation for the length of a certain fhsize parameter in the NFS client, specifically in the sys/nfsclient/nfs vfsops.c file. This allows local users to gain privileges via a crafted mount request when vfs.usermount is enabled.
Recommendations For FreeBSD versions 7.2 through 8.1-PRERELEASE, consider disabling the vfs.usermount option to minimize the risk of exploitation until a patch is available.

Exploit

Fix

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2010-2020

Affected Products

Freebsd