First published: Fri Aug 01 2008(Updated: )
A certain Red Hat build script for nfs-utils before 1.0.9-35z.el5_2 on Red Hat Enterprise Linux (RHEL) 5 omits TCP wrappers support, which might allow remote attackers to bypass intended access restrictions.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Red Hat Enterprise Linux | =5.0 | |
Red Hat Enterprise Linux | =5.0 | |
Red Hat NFS Utils | =1.0.9-35z.el5_2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-1376 has a medium severity rating due to potential access restriction bypass issues.
To fix CVE-2008-1376, upgrade to nfs-utils version 1.0.9-35z.el5_2 or later.
CVE-2008-1376 affects Red Hat Enterprise Linux 5.0 when using nfs-utils versions prior to 1.0.9-35z.el5_2.
Attackers can exploit CVE-2008-1376 to bypass intended access restrictions, potentially gaining unauthorized access.
There is no known workaround for CVE-2008-1376; the recommended action is to update to the fixed version.