Guessable NFS filehandles |
---|
Risk Level: | High | Check or Attack Name: nfsguess |
---|---|---|
Platforms: | SunOS | |
Description: | The NFS Guess vulnerability was found, which allows an attacker to access the file system, bypassing mountd security by guessing a file handle. |
|
Remedy: | Obtain the NFS jumbo patch from your vendor. After you install the latest NFS security patch, be sure to run fsirand on your entire file system. The new fsirand program makes it difficult for a remote system user to guess NFS filehandles, preventing the user from conducting unauthorized mounts and accessing your NFS file systems. See SunOS Patch ID# 100173-13 at http://sunsolve.sun.com/sunsolve/pubpatches/patches.html. |
|
References: |
Know Your Risks |