Nfs Utils
Vendor:
First CVE: Jun 14, 2004 · Active for 22 years
5
Total CVEs
More Total CVEs than 79% of tracked products
1.3
Avg CVEs / Year
Higher CVE frequency than 58% of tracked products
7.0
Avg CVSS
Higher Avg CVSS than 44% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Nfs Utils over time
Volume of CVEsAvg CVSS Base Score
First CVE
Jun 14, 2004
22 years ago
Most Recent CVE
Jan 20, 2009
6,398 days ago
CVE Severity & Scoring
Nfs Utils5 CVEs
40%
60%
All CVEs353,173 CVEs
45%
40%
11%
MediumHigh
Attack Vector
Local0 (0.0%)
Network0 (0.0%)
Unknown5 (100.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low0 (0.0%)
High0 (0.0%)
Unknown5 (100.0%)
User Interaction
None0 (0.0%)
Unknown5 (100.0%)
Required0 (0.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None0 (0.0%)
Unknown5 (100.0%)
Top CVEs
Signals from CVEs in this product scope (5 CVEs).
5 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2004-0946HIGH rquotad in nfs-utils (rquota_server.c) before 1.0.6-r6 on 64-bit architectures does not properly perform an integer conversion, which leads to a stack-based buffer overflow and all | Jan 10, 2005 | 10.0 | 35 | NO | NO |
CVE-2008-4552HIGH The good_client function in nfs-utils 1.0.9, and possibly other versions before 1.1.3, invokes the hosts_ctl function with the wrong order of arguments, which causes TCP Wrappers t | Oct 14, 2008 | 7.5 | 21 | NO | NO |
CVE-2009-0180HIGH Certain Fedora build scripts for nfs-utils before 1.1.2-9.fc9 on Fedora 9, and before 1.1.4-6.fc10 on Fedora 10, omit TCP Wrapper support, which might allow remote attackers to byp | Jan 20, 2009 | 7.5 | 19 | NO | NO |
CVE-2004-1014MEDIUM statd in nfs-utils 1.257 and earlier does not ignore the SIGPIPE signal, which allows remote attackers to cause a denial of service (server process crash) via a TCP connection that | Jan 10, 2005 | 5.0 | 19 | NO | NO |
CVE-2004-0154MEDIUM rpc.mountd in nfs-utils after 1.0.3 and before 1.0.6 allows attackers to cause a denial of service (crash) via an NFS mount of a directory from a client whose reverse DNS lookup na | Jun 14, 2004 | 5.0 | 15 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (5 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (5 CVEs).
Media Mentions
Signals from CVEs in this product scope (5 CVEs).
Top CNAs Publishing CVEs For Nfs Utils
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 1.1.3 | 1 | 7.5 | 1.6% | 0 | 0 |
| 1.1.2 | 1 | 7.5 | 1.6% | 0 | 0 |
| 1.1.1 | 2 | 7.5 | 1.8% | 0 | 0 |
| 1.1.0 | 2 | 7.5 | 1.8% | 0 | 0 |
| 1.0.9 | 2 | 7.5 | 1.8% | 0 | 0 |
| 1.0.8 | 2 | 7.5 | 1.8% | 0 | 0 |
| 1.0.7 | 2 | 7.5 | 1.8% | 0 | 0 |
| 1.0.6 | 5 | 7.1 | 3.5% | 0 | 0 |
| 1.0.4 | 4 | 7.5 | 3.7% | 0 | 0 |
| 1.0.3 | 4 | 7.5 | 3.7% | 0 | 0 |
| 1.0.2 | 3 | 8.1 | 4.2% | 0 | 0 |
| 1.0.12 | 2 | 7.5 | 1.8% | 0 | 0 |
| 1.0.11 | 2 | 7.5 | 1.8% | 0 | 0 |
| 1.0.10 | 2 | 7.5 | 1.8% | 0 | 0 |
| 1.0.1 | 4 | 7.5 | 3.7% | 0 | 0 |
| 1.0 | 4 | 7.5 | 3.7% | 0 | 0 |
| 0.3.3 | 2 | 7.5 | 1.8% | 0 | 0 |
| 0.3.1 | 2 | 7.5 | 1.8% | 0 | 0 |
| 0.2.1 | 2 | 7.5 | 1.8% | 0 | 0 |
| 0.2 | 2 | 7.5 | 1.8% | 0 | 0 |