CVE-1999-1564: Low severity FreeBSD FreeBSD vulnerability
FreeBSD 3.2 and possibly other versions allows a local user to cause a denial of service (panic) with a large number accesses of an NFS v3 mounted directory from a large number of processes.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Configuration
Reduce the maximum number of processes a single user may create (e.g., via login class limits or resource limits) to prevent a local user from spawning a large number of processes that can trigger the kernel panic when accessing an NFS v3 mounted directory.
FreeBSD per-user process limits max processes per user = reduced - Compensating control
Unmount or avoid using NFS v3 mounted directories on affected systems until a kernel fix is available. Prevent users from accessing NFS v3 mounts (restrict mount access or remove mounts) to eliminate the trigger condition.
Event History
Frequently Asked Questions
What is the severity of CVE-1999-1564?
CVE-1999-1564 is classified as a denial of service vulnerability that can lead to system panic.
How does CVE-1999-1564 affect systems?
CVE-1999-1564 affects FreeBSD 3.2 and can be triggered by a local user through excessive accesses to an NFS v3 mounted directory.
How do I fix CVE-1999-1564?
To fix CVE-1999-1564, upgrade your FreeBSD system to a version that has patched this vulnerability.
Who is affected by CVE-1999-1564?
Local users on FreeBSD 3.2 systems may exploit CVE-1999-1564 to cause a denial of service.
What version of FreeBSD is vulnerable to CVE-1999-1564?
FreeBSD 3.2 is identified as vulnerable to CVE-1999-1564, with potential impact on similar versions.