CVE-2011-1739

FreeBSD 7.4-8.2 - Unauthenticated Access Restriction Bypass via NFS Mount Request

Title source: llm
STIX 2.1

Description

The makemask function in mountd.c in mountd in FreeBSD 7.4 through 8.2 does not properly handle a -network field specifying a CIDR block with a prefix length that is not an integer multiple of 8, which allows remote attackers to bypass intended access restrictions in opportunistic circumstances via an NFS mount request.

References (6)

Core 6
Core References
Vendor Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2011/1076
Various Sources vendor-advisory x_refsource_freebsd
http://security.FreeBSD.org/advisories/FreeBSD-SA-11:01.mountd.asc
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/47517
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/66981
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://securitytracker.com/id?1025425
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/44307

Scores

EPSS 0.0034
EPSS Percentile 56.6%

Details

CWE
CWE-20
Status published
Products (4)
freebsd/freebsd 7.4
freebsd/freebsd 8.0
freebsd/freebsd 8.1
freebsd/freebsd 8.2
Published May 03, 2011
Tracked Since Feb 18, 2026