CVE-2013-20001
Summary
| CVE | CVE-2013-20001 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-02-12 20:15:00 UTC |
| Updated | 2024-03-18 22:15:00 UTC |
| Description | An issue was discovered in OpenZFS through 2.0.3. When an NFS share is exported to IPv6 addresses via the sharenfs feature, there is a silent failure to parse the IPv6 address data, and access is allowed to everyone. IPv6 restrictions from the configuration are not applied. |
Risk And Classification
Problem Types: NVD-CWE-noinfo
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| sharenfs and IPv6 on Ubuntu 12.04 · Issue #1894 · openzfs/zfs · GitHub | MISC | github.com | Exploit, Third Party Advisory |
| Releases · openzfs/zfs · GitHub | MISC | github.com | Release Notes, Third Party Advisory |
| [debian-lts-announce] 20240318 [SECURITY] [DLA 3766-1] zfs-linux security update | lists.debian.org | ||
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.