CVE-2013-1923
EPSS 0.40%Published: 1/21/2014Modified: 4/28/2026
Also known as:DEBIAN-CVE-2013-1923
Description
rpc-gssd in nfs-utils before 1.2.8 performs reverse DNS resolution for server names during GSSAPI authentication, which might allow remote attackers to read otherwise-restricted files via DNS spoofing attacks.
Affected packages (1)
- Debian/nfs-utilsfrom 0, < 1:1.2.8-1