Articles with tag: Nfsclient
                                            
                                        
                                                            POSTED BY:
                                                            
                                                                
								
                                           			   Patroklos Argyroudis
                                       				
								
                                                                /
                                                            
                                                            
                        
                            23.05.2010
                                                        
                                                    
                                                    
                                                    
                                                        
                                                        FreeBSD kernel NFS client local vulnerabilities
| CENSUS ID: | CENSUS-2010-0001 | 
| CVE ID: | CVE-2010-2020 | 
| Affected Products: | FreeBSD 8.0-RELEASE, 7.3-RELEASE, 7.2-RELEASE | 
| Class: | Improper Input Validation (CWE-20) | 
| Remote: | No | 
| Discovered by: | Patroklos Argyroudis | 
We have discovered two improper input validation vulnerabilities in the FreeBSD kernel’s NFS client-side implementation (FreeBSD 8.0-RELEASE, 7.3-RELEASE and 7.2-RELEASE) that allow local unprivileged users to escalate their privileges, or to crash the system by performing a denial of service attack.
