SB2019102928 - Multiple vulnerabilities in linux-nfs RPCBind



SB2019102928 - Multiple vulnerabilities in linux-nfs RPCBind

Published: October 29, 2019 Updated: August 8, 2020

Security Bulletin ID SB2019102928
Severity
Low
Patch available
YES
Number of vulnerabilities 2
Exploitation vector Local access
Highest impact Code execution

Breakdown by Severity

Low 100%
  • Low
  • Medium
  • High
  • Critical

Description

This security bulletin contains information about 2 secuirty vulnerabilities.


1) Input validation error (CVE-ID: CVE-2010-2061)

The vulnerability allows a local authenticated user to execute arbitrary code.

rpcbind 0.2.0 does not properly validate (1) /tmp/portmap.xdr and (2) /tmp/rpcbind.xdr, which can be created by an attacker before the daemon is started.


2) Link following (CVE-ID: CVE-2010-2064)

The vulnerability allows a local authenticated user to read and manipulate data.

rpcbind 0.2.0 allows local users to write to arbitrary files or gain privileges via a symlink attack on (1) /tmp/portmap.xdr and (2) /tmp/rpcbind.xdr.


Remediation

Install update from vendor's website.