The default configuration for autofs 5 (autofs5) in some Linux distributions, such as Red Hat Enterprise Linux (RHEL) 4 and 5, does not specify the nodev mount option for the -hosts map, which allows local users to access "important devices" by operating a remote NFS server and creating special device files on that server, as demonstrated by the /dev/mem device.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2007-12-20 14:46
Updated : 2017-09-28 18:29
NVD link : CVE-2007-6285
Mitre link : CVE-2007-6285
JSON object : View
CWE
CWE-16
Configuration
Products Affected
redhat
- enterprise_linux