Описание
ELSA-2026-3939: nfs-utils security update (MODERATE)
[2.8.3-0.0.1.el10_1.3]
- remove multiple warnings when upgrading nfs-utils with gssproxy
[2.8.3-3]
- Add requires for selinux-policy (RHEL-127092)
[2.8.3-2]
- mountd: Minor refactor of get_rootfh() (RHEL-127092)
- mountd: Separate lookup of the exported directory and the mount path (RHEL-127092)
- support: Add a mini-library to extract and apply RPC credentials (RHEL-127092)
- Fix access checks when mounting subdirectories in NFSv3 (RHEL-127092) Resolves: CVE-2025-12801
Обновленные пакеты
Oracle Linux 10
Oracle Linux aarch64
libnfsidmap
2.8.3-0.0.1.el10_1.3
libnfsidmap-devel
2.8.3-0.0.1.el10_1.3
nfs-utils
2.8.3-0.0.1.el10_1.3
nfs-utils-coreos
2.8.3-0.0.1.el10_1.3
nfsv4-client-utils
2.8.3-0.0.1.el10_1.3
Oracle Linux x86_64
libnfsidmap
2.8.3-0.0.1.el10_1.3
libnfsidmap-devel
2.8.3-0.0.1.el10_1.3
nfs-utils
2.8.3-0.0.1.el10_1.3
nfs-utils-coreos
2.8.3-0.0.1.el10_1.3
nfsv4-client-utils
2.8.3-0.0.1.el10_1.3
Связанные CVE
Связанные уязвимости
A vulnerability was recently discovered in the rpc.mountd daemon in the nfs-utils package for Linux, that allows a NFSv3 client to escalate the privileges assigned to it in the /etc/exports file at mount time. In particular, it allows the client to access any subdirectory or subtree of an exported directory, regardless of the set file permissions, and regardless of any 'root_squash' or 'all_squash' attributes that would normally be expected to apply to that client.
A vulnerability was recently discovered in the rpc.mountd daemon in the nfs-utils package for Linux, that allows a NFSv3 client to escalate the privileges assigned to it in the /etc/exports file at mount time. In particular, it allows the client to access any subdirectory or subtree of an exported directory, regardless of the set file permissions, and regardless of any 'root_squash' or 'all_squash' attributes that would normally be expected to apply to that client.
A vulnerability was recently discovered in the rpc.mountd daemon in the nfs-utils package for Linux, that allows a NFSv3 client to escalate the privileges assigned to it in the /etc/exports file at mount time. In particular, it allows the client to access any subdirectory or subtree of an exported directory, regardless of the set file permissions, and regardless of any 'root_squash' or 'all_squash' attributes that would normally be expected to apply to that client.
A vulnerability was recently discovered in the rpc.mountd daemon in th ...