Описание
libnfs through 6.0.2 before 55c18ea does not validate a string size, leading to an integer overflow during a connection to a crafted NFS server. This occurs in libnfs_zdr_string in lib/libnfs-zdr.c.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | 5.0.2-1ubuntu2 |
| esm-apps-legacy/xenial | needs-triage | |
| esm-apps/bionic | needs-triage | |
| esm-infra/focal | needs-triage | |
| jammy | released | 4.0.0-1ubuntu0.1 |
| noble | released | 5.0.2-1ubuntu0.24.04.1 |
| questing | released | 5.0.2-1ubuntu0.25.10.1 |
| resolute | released | 5.0.2-1ubuntu1.1 |
| upstream | needs-triage |
Показывать по
10
7.1 High
CVSS3
Связанные уязвимости
CVSS3: 7.1
nvd
около 2 месяцев назад
libnfs through 6.0.2 before 55c18ea does not validate a string size, leading to an integer overflow during a connection to a crafted NFS server. This occurs in libnfs_zdr_string in lib/libnfs-zdr.c.
CVSS3: 7.1
debian
около 2 месяцев назад
libnfs through 6.0.2 before 55c18ea does not validate a string size, l ...
7.1 High
CVSS3