OSVDB ID: 2734

Title: IRIX NFS Wildcard exportfs Access Check Bypass

Info

Disclosure

Oct 28, 2003

Discovery

Unknown

Dates

Exploit

Unknown

Solution

Unknown

Description

IRIX contains a flaw that may allow a malicious user to gain access to unauthorized privileges. The issue is triggered when a malicious user bypasses Network File System (NFS) access checks when the root,rw or access options in /etc/exports contain only wildcards (IP addresses or domain suffixes) and no explicit hostnames or netgroups. This flaw may lead to a loss of integrity.

Classification

Location: Local Access Required
Attack Type: Misconfiguration
Impact: Loss of Integrity
Disclosure: OSVDB Verified

Solution

Upgrade to version 6.5.22 or higher, as it has been reported to fix this vulnerability. In addition, Silicon Graphics, Inc. has released patches for some older versions.

Products

Silicon Graphics, Inc.

IRIX

6.5.21m
6.5.21f

References

Credit

Unknown or Incomplete



Direct URL: http://osvdb.org/2734