CVE-1999-0211: Medium severity Sun SunOS vulnerability

Published Feb 14, 1994
·
Updated

Extra long export lists over 256 characters in some mount daemons allows NFS directories to be mounted by anyone.

Affected Software

5 affected components
Sun SunOS=4.1.1
Sun SunOS=4.1.3
Sun SunOS=5.0
Sun SunOS=4.1.2
Sun SunOS=4.1.3c

Remediation

Recommended actions to resolve this vulnerability, in priority order.

  1. Configuration

    Ensure export lists for mount daemons do not exceed 256 characters. Shorten host lists or split exports into multiple export entries so each export list is 256 characters or fewer, then reload/restart the mount daemon to apply changes.

    SunOS mount daemon export_list_length = <=256
  2. Compensating control

    Restrict who can mount NFS exports by implementing network controls: limit NFS/mount daemon access to trusted IP ranges via firewall rules or host-based ACLs and isolate NFS service to management/trusted networks.

  3. Operational

    Audit all current NFS export lists and identify any entries longer than 256 characters; remediate those entries (shorten or split) and restart affected mount daemons. Monitor logs for unauthorized mount attempts after remediation.

Event History

Feb 14, 1994
CVE Published
05:00 AM
Data Sourced
via NVD·05:00 AM
DescriptionSeverityAffected Software
Sep 29, 1999
CVE Published
via MITRE·04:00 AM
Data Sourced
via MITRE·04:00 AM
Description

Frequently Asked Questions

1

What is the severity of CVE-1999-0211?

CVE-1999-0211 has a high severity rating due to its potential to allow unauthorized users to mount NFS directories.

2

How do I fix CVE-1999-0211?

To fix CVE-1999-0211, ensure that mount daemons are configured to limit export lists to less than 256 characters.

3

Which software versions are affected by CVE-1999-0211?

CVE-1999-0211 affects SunOS versions 4.1.1, 4.1.2, 4.1.3, 4.1.3c, and 5.0.

4

What is the impact of CVE-1999-0211?

The impact of CVE-1999-0211 is that it allows attackers to mount NFS directories, potentially leading to data exposure.

5

Is there a workaround for CVE-1999-0211?

A potential workaround for CVE-1999-0211 is to restrict access controls for NFS shares in the mount daemon configuration.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203