Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
rpc-gssd in nfs-utils before 1.2.8 performs reverse DNS resolution for server names during GSSAPI authentication, which might allow remote attackers to read otherwise-restricted files via DNS spoofing attacks.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
nfs-utils ‘rpc.gssd’DNS欺骗漏洞
Vulnerability Description
nfs-utils是一套Linux内核中的NFS(网络文件系统)的支持程序。 nfs-utils 1.2.7及之前版本中的rpc-gssd中存在漏洞。该漏洞源于程序在GSSAPI认证期间为服务器名称提供逆向DNS解析。远程攻击者可通过实施DNS欺骗攻击利用该漏洞读取其它受限的文件。
CVSS Information
N/A
Vulnerability Type
N/A