First published: Tue May 03 2011(Updated: )
The makemask function in mountd.c in mountd in FreeBSD 7.4 through 8.2 does not properly handle a -network field specifying a CIDR block with a prefix length that is not an integer multiple of 8, which allows remote attackers to bypass intended access restrictions in opportunistic circumstances via an NFS mount request.
Credit: secteam@freebsd.org
Affected Software | Affected Version | How to fix |
---|---|---|
FreeBSD Kernel | =7.4 | |
FreeBSD Kernel | =8.2 | |
FreeBSD Kernel | =8.0 | |
FreeBSD Kernel | =8.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-1739 is considered a medium severity vulnerability that allows remote attackers to bypass access restrictions.
To fix CVE-2011-1739, update FreeBSD to versions 7.4, 8.0, 8.1, or 8.2 that include the patch for the mountd service.
CVE-2011-1739 affects FreeBSD versions 7.4, 8.0, 8.1, and 8.2.
CVE-2011-1739 can be exploited by remote attackers who can craft specific CIDR block requests to bypass access controls.
CVE-2011-1739 is a bypass vulnerability that affects the access restrictions of the mountd service in FreeBSD.