mountd buffer overflow

Bug #1990235 reported by Joel Sloof
2
Affects Status Importance Assigned to Milestone
nfs-utils (Ubuntu)
Invalid
Undecided
Unassigned

Bug Description

Ubuntu 20.04.5 LTS
kernel 5.4.0-125-generic
nfs-kernel-server 1:1.3.4-2.5ubuntu3.4
mountd seems to contain a exploitable buffer overflow bug according to Nessus Tenable plugin script_id (11337).

CVE References

Revision history for this message
Alex Murray (alexmurray) wrote :

Can you please provide more information? What CVE is this in reference to?

Changed in nfs-utils (Ubuntu):
status: New → Incomplete
Revision history for this message
Joel Sloof (joelsloof) wrote :
Revision history for this message
Alex Murray (alexmurray) wrote :

Hmm this sounds like a false positive - that vulnerability predates the existence of Ubuntu and would have been patched a very long time ago.

Changed in nfs-utils (Ubuntu):
status: Incomplete → Invalid
information type: Private Security → Public
Revision history for this message
Joel Sloof (joelsloof) wrote :

After some further digging we have verified that it is a false positive.

To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.