vendor:
nfs-utils
by:
ron1n
7.5
CVSS
HIGH
Format String Vulnerability
134
CWE
Product Name: nfs-utils
Affected Version From: Unknown
Affected Version To: Unknown
Patch Exists: YES
Related CWE: CVE-2000-0816
CPE: a:nfs-utils
Platforms Tested: Linux
2000
Vulnerability in rpc.statd program
A remote attacker can execute code as root by exploiting the format-string vulnerability in the 'rpc.statd' program, which is part of the 'nfs-utils' package that is shipped with a number of popular Linux distributions. The attacker can construct a format string that injects executable code into the process address space and overwrites a function's return address, thus forcing the program to execute the code.
Mitigation:
Apply the patch provided by the respective Linux distributions (Debian, Red Hat, Connectiva) or any other Linux distribution that runs the statd process. Ensure that the 'rpc.statd' program is updated to a patched version.