445
VMScore

CVE-2013-20001

Published: 12/02/2021 Updated: 18/03/2024
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

An issue exists in OpenZFS up to and including 2.0.3. When an NFS share is exported to IPv6 addresses via the sharenfs feature, there is a silent failure to parse the IPv6 address data, and access is allowed to everyone. IPv6 restrictions from the configuration are not applied.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

openzfs openzfs

Vendor Advisories

Debian Bug report logs - #1059322 zfs-linux: CVE-2013-20001 Package: src:zfs-linux; Maintainer for src:zfs-linux is Debian ZFS on Linux maintainers <pkg-zfsonlinux-devel@alioth-listsdebiannet>; Reported by: Moritz Mühlenhoff <jmm@inutilorg> Date: Fri, 22 Dec 2023 14:00:11 UTC Severity: important Tags: security, u ...