BSD Kernel NFS Denial of Service Vulnerability
BID:3299
Info
BSD Kernel NFS Denial of Service Vulnerability
| Bugtraq ID: | 3299 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Sep 06 2001 12:00AM |
| Updated: | Sep 06 2001 12:00AM |
| Credit: | Published in a NetBSD Security Advisory on September 6, 2001. |
| Vulnerable: |
NetBSD NetBSD current pre20010805 NetBSD NetBSD 1.5.1 NetBSD NetBSD 1.5 NetBSD NetBSD 1.4.3 NetBSD NetBSD 1.4.2 NetBSD NetBSD 1.4.1 NetBSD NetBSD 1.4 Apple Mac OS X Server 10.3.6 Apple Mac OS X Server 10.3.5 Apple Mac OS X Server 10.3.4 Apple Mac OS X Server 10.3.3 Apple Mac OS X Server 10.3.2 Apple Mac OS X Server 10.3.1 Apple Mac OS X Server 10.3 Apple Mac OS X 10.3.6 Apple Mac OS X 10.3.5 Apple Mac OS X 10.3.4 Apple Mac OS X 10.3.3 Apple Mac OS X 10.3.2 Apple Mac OS X 10.3.1 Apple Mac OS X 10.3 |
| Not Vulnerable: |
NetBSD NetBSD 1.5.2 |
Discussion
BSD Kernel NFS Denial of Service Vulnerability
A denial of service condition exists in the BSD kernel. This condition is due to insufficient checks on data passed from userland via the Networking File System (NFS) package to the BSD kernel.
This condition may be exploited to cause a kernel panic. Although unconfirmed it is possible this issue may facilitate code execution.
This vulnerability is only exploitable in configurations where users are permitted to create mounts; it was disabled by default in NetBSD 1.5 and later.
It has been reported that this issue currently affects Apple Mac OS X 10.3 packages; it is possible that previous version of Mac OS X are also vulnerable.
A denial of service condition exists in the BSD kernel. This condition is due to insufficient checks on data passed from userland via the Networking File System (NFS) package to the BSD kernel.
This condition may be exploited to cause a kernel panic. Although unconfirmed it is possible this issue may facilitate code execution.
This vulnerability is only exploitable in configurations where users are permitted to create mounts; it was disabled by default in NetBSD 1.5 and later.
It has been reported that this issue currently affects Apple Mac OS X 10.3 packages; it is possible that previous version of Mac OS X are also vulnerable.
Solution / Fix
BSD Kernel NFS Denial of Service Vulnerability
Solution:
NetBSD has supplied updates that rectify this issue for their NetBSD product:
NetBSD NetBSD current pre20010805
NetBSD NetBSD 1.5
NetBSD NetBSD 1.5.1
Solution:
NetBSD has supplied updates that rectify this issue for their NetBSD product:
NetBSD NetBSD current pre20010805
-
NetBSD SA2001-015-kernlen-1.5.patch
ftp://ftp.netbsd.org/pub/NetBSD/security/patches/SA2001-015-kernlen-1. 5.patch
NetBSD NetBSD 1.5
-
NetBSD SA2001-015-kernlen-1.5.patch
ftp://ftp.netbsd.org/pub/NetBSD/security/patches/SA2001-015-kernlen-1. 5.patch
NetBSD NetBSD 1.5.1
-
NetBSD SA2001-015-kernlen-1.5.patch
ftp://ftp.netbsd.org/pub/NetBSD/security/patches/SA2001-015-kernlen-1. 5.patch
References
BSD Kernel NFS Denial of Service Vulnerability
References:
References:
- NetBSD Security Page (NetBSD)
- Various Kernel Level Vulnerabilities in Mac OS X 10.3.x (Immunity Inc.)