PT-2010-3640 · Freebsd · Freebsd
Argp
+1
·
Published
2010-05-28
·
Updated
2012-11-06
·
CVE-2010-2020
CVSS v2.0
6.9
Medium
| Vector | AV:L/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
FreeBSD versions 7.2 through 8.1-PRERELEASE
Description
The issue concerns a lack of validation for the length of a certain
fhsize parameter in the NFS client, specifically in the sys/nfsclient/nfs vfsops.c file. This allows local users to gain privileges via a crafted mount request when vfs.usermount is enabled.Recommendations
For FreeBSD versions 7.2 through 8.1-PRERELEASE, consider disabling the
vfs.usermount option to minimize the risk of exploitation until a patch is available.Exploit
Fix
RCE
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Freebsd