Ncpfs is a network filesystem implementation for accessing Novell NetWare resources, deployed primarily on Linux and Unix systems where legacy network storage integration remains necessary. The vulnerability surface concentrates in the single ncpfs product and recurs through weakness classes including sensitive information disclosure, improper input validation, and symlink-following conditions that are endemic to filesystem-level code interfacing with untrusted network protocols. Public exploit code has an elevated tendency to be available for vulnerabilities in this product, reflecting both the accessibility of the attack surface and the historical interest in filesystem and protocol vulnerabilities. Live severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Ncpfs over time
Signals from CVEs in this vendor scope (8 CVEs).
8 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2010-0788MEDIUM ncpfs 2.2.6 allows local users to cause a denial of service, obtain sensitive information, or possibly gain privileges via symlink attacks involving the (1) ncpmount and (2) ncpumo | Mar 2, 2010 | 4.4 | 25 | NO | YES |
CVE-2005-0014HIGH Buffer overflow in ncplogin in ncpfs before 2.2.6 allows remote malicious NetWare servers to execute arbitrary code on the NetWare client. | May 2, 2005 | 7.5 | 20 | NO | NO |
CVE-2005-0013HIGH nwclient.c in ncpfs before 2.2.6 does not drop root privileges before executing utilities using the NetWare client functions, which allows local users to gain privileges. | May 2, 2005 | 7.2 | 18 | NO | NO |
CVE-2004-1079HIGH Buffer overflow in (1) ncplogin and (2) ncpmap in nwclient.c for ncpfs 2.2.4, and possibly other versions, may allow local users to gain privileges via a long -T option. | Jan 10, 2005 | 7.2 | 18 | NO | NO |
CVE-2011-1680MEDIUM ncpmount in ncpfs 2.2.6 and earlier does not remove the /etc/mtab~ lock file after a failed attempt to add a mount entry, which has unspecified impact and local attack vectors. | Apr 10, 2011 | 4.4 | 17 | NO | NO |
ncpfs 2.2.6 and earlier attempts to use (1) ncpmount to append to the /etc/mtab file and (2) ncpumount to append to the /etc/mtab.tmp file without first checking whether resource l | Apr 10, 2011 | 3.3 | 15 | NO | NO |
The (1) ncpmount, (2) ncpumount, and (3) ncplogin programs in ncpfs 2.2.6 do not properly create lock files, which allows local users to cause a denial of service (application fail | Mar 10, 2010 | 2.1 | 12 | NO | NO |
sutil/ncpumount.c in ncpumount in ncpfs 2.2.6 produces certain detailed error messages about the results of privileged file-access attempts, which allows local users to determine t | Mar 10, 2010 | 2.1 | 12 | NO | NO |
Signals from CVEs in this vendor scope (8 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Ncpfs.
Media articles that mention a CVE ID that affects a product developed by Ncpfs — matched by CVE ID, not by vendor name.