Linux rpc.lockd Remote Denial Of Service Vulnerability

A denial of service attack exists in the NFS lock daemon supplied with Linux. By connecting to the port rpc.lockd is running on, and supplying random input, it will cause lockd to exit with an error. The socket associated with rpc.lockd is also not properly released, and cannot be rebound to without a reboot.

This vulnerability most likely affects all Linux distributions running NFS.


 

Privacy Statement
Copyright 2010, SecurityFocus