PT-2024-28730 · Fog · Fog

Philipp-Tg

·

Published

2024-07-12

·

Updated

2024-09-05

·

CVE-2024-39916

CVSS v3.1

6.4

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions FOG versions prior to 1.5.10.30
Description The issue concerns the NFS configuration in /etc/exports generated by the FOG installer, which allows an attacker to modify files outside the export in the default installation. The no subtree check option in the exports means that the server only checks if the requested file is on the correct filesystem, not if it is in the correct directory. This enables modifying files in /images, accessing other files on the same filesystem, and accessing files on other filesystems.
Recommendations For versions prior to 1.5.10.30, update to version 1.5.10.30 to resolve the issue. As a temporary workaround, consider modifying the NFS configuration to remove the no subtree check option from the exports in /etc/exports to prevent unauthorized file access.

Exploit

Fix

Weakness Enumeration

Related Identifiers

CVE-2024-39916
GHSA-3XJR-XF9V-HWJH

Affected Products

Fog