Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-r8r4-4w47-4w9x

Опубликовано: 10 апр. 2024
Источник: github
Github: Не прошло ревью

Описание

In the Linux kernel, the following vulnerability has been resolved:

NFSD: Fix exposure in nfsd4_decode_bitmap()

rtm@csail.mit.edu reports:

nfsd4_decode_bitmap4() will write beyond bmval[bmlen-1] if the RPC directs it to do so. This can cause nfsd4_decode_state_protect4_a() to write client-supplied data beyond the end of nfsd4_exchange_id.spo_must_allow[] when called by nfsd4_decode_exchange_id().

Rewrite the loops so nfsd4_decode_bitmap() cannot iterate beyond @bmlen.

Reported by: rtm@csail.mit.edu

In the Linux kernel, the following vulnerability has been resolved:

NFSD: Fix exposure in nfsd4_decode_bitmap()

rtm@csail.mit.edu reports:

nfsd4_decode_bitmap4() will write beyond bmval[bmlen-1] if the RPC directs it to do so. This can cause nfsd4_decode_state_protect4_a() to write client-supplied data beyond the end of nfsd4_exchange_id.spo_must_allow[] when called by nfsd4_decode_exchange_id().

Rewrite the loops so nfsd4_decode_bitmap() cannot iterate beyond @bmlen.

Reported by: rtm@csail.mit.edu

Связанные уязвимости

ubuntu
почти 2 года назад

Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

CVSS3: 6.1
redhat
почти 2 года назад

[REJECTED CVE] In the Linux kernel, the following vulnerability has been resolved: NFSD: Fix exposure in nfsd4_decode_bitmap() The Linux kernel CVE team has assigned CVE-2021-47213 to this issue.

nvd
почти 2 года назад

Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.