NFS: Linux Kernel NFS Access Control List Overflow DoS

This signature detects attempts to exploit a known vulnerability against the Network File System (NFS) implementation in the Linux Kernel. A successful attack can result in a denial-of-service condition, generally invoking a reboot of the targeted system.

Extended Description

The Linux kernel is prone to a buffer-overflow vulnerability because it fails to perform adequate boundary checks on user-supplied data. Attackers can exploit this issue to execute arbitrary code or cause a denial-of-service condition. Versions prior to Linux kernel 2.6.26.4 are vulnerable.

Affected Products

Linux kernel

References

BugTraq: 31133

CVE: CVE-2008-3915

Short Name
NFS:OVERFLOW:LINUX-ACL-OF-DOS
Severity
Minor
Recommended
False
Recommended Action
Drop
Category
NFS
Keywords
Access CVE-2008-3915 Control DoS Kernel Linux List NFS Overflow bid:31133
Release Date
10/08/2008
Supported Platforms

srx-branch-19.3

vsrx3bsd-19.2

srx-19.4

vsrx3bsd-19.4

srx-branch-19.4

vsrx-19.4

vsrx-19.2

srx-19.3

srx-branch-12.3

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx-12.3

vmx-19.3

srx-12.3

Sigpack Version
3729
False Positive
Unknown
Vendors

Red_hat

Ubuntu

Debian

Linux

CVSS Score

9.3

Found a potential security threat?