漏洞标题
N/A
漏洞描述信息
NFSv4 IDMapper(nfsidmap)在0.17之前并不正确处理getpwnam_r函数返回值,在进行用户名查找时,这可能导致它报告一个文件由"root"拥有,而不是"nobody"。如果文件在服务器上存在,但在客户端上不存在,则可能会发生这种情况。
CVSS信息
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
漏洞类别
N/A
漏洞标题
N/A
漏洞描述信息
The NFSv4 ID mapper (nfsidmap) before 0.17 does not properly handle return values from the getpwnam_r function when performing a username lookup, which can cause it to report a file as being owned by "root" instead of "nobody" if the file exists on the server but not on the client.
CVSS信息
N/A
漏洞类别
N/A
漏洞标题
NFSv4 ID Mapper nfsidmap Username Lookup 本地特权提升漏洞
漏洞描述信息
SUSE Linux Enterprise 10版本上的NFSv4 ID mapper (nfsidmap)存在未明漏洞。该漏洞未明攻击向量和影响,且涉及NFSv4 name lookups的uid翻译的名称。The NFSv4 ID mapper (nfsidmap) before 0.17 does not properly handle return values from the getpwnam_r function when performing a username lookup, whic
CVSS信息
N/A
漏洞类别
授权问题