5
CVSSv2

CVE-2004-1014

Published: 10/01/2005 Updated: 19/10/2018
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

statd in nfs-utils 1.257 and previous versions does not ignore the SIGPIPE signal, which allows remote malicious users to cause a denial of service (server process crash) via a TCP connection that is prematurely terminated.

Vulnerable Product Search on Vulmon Subscribe to Product

nfs nfs-utils 1.0.6

debian debian linux 3.0

mandrakesoft mandrake linux 9.2

mandrakesoft mandrake linux corporate server 2.1

mandrakesoft mandrake linux 10.1

redhat enterprise linux desktop 3.0

mandrakesoft mandrake linux 10.0

redhat enterprise linux 3.0

Vendor Advisories

SGI discovered a remote Denial of Service vulnerability in the NFS statd server statd did not ignore the “SIGPIPE” signal which caused it to shutdown if a misconfigured or malicious peer terminated the TCP connection prematurely ...
Synopsis nfs-utils security update Type/Severity Security Advisory: Important Topic An updated nfs-utils package that fixes various security issues is nowavailable Description The nfs-utils package provides a daemon for the kernel NFS server andrelated toolsSGI reported that the statd dae ...
Synopsis nfs-utils security update Type/Severity Security Advisory: Important Topic An updated nfs-utils package that fixes various security issues is nowavailable Description The nfs-utils package provides a daemon for the kernel NFS server andrelated tools, providing a much higher level ...