CVE-2003-0976: High severity Novell NetWare FTP Server vulnerability
NFS Server (XNFS.NLM) for Novell NetWare 6.5 does not properly enforce sys:\etc\exports when hostname aliases from sys:etc\hosts file are used, which could allow users to mount file systems when XNFS should deny the host.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2003-0976?
CVE-2003-0976 is considered a high severity vulnerability due to improper enforcement of access controls.
How do I fix CVE-2003-0976?
To fix CVE-2003-0976, ensure that the NFS server properly restricts access based on the configuration in sys:\etc\exports.
What systems are affected by CVE-2003-0976?
CVE-2003-0976 affects Novell NetWare 6.5, specifically Service Pack 1 and the base version.
What is the impact of CVE-2003-0976?
The impact of CVE-2003-0976 allows unauthorized users to mount file systems that should be denied access.
Is there a patch available for CVE-2003-0976?
There is no specific patch for CVE-2003-0976, but updating to a secure configuration can mitigate the vulnerability.