<?xml version="1.0" ?>
<!DOCTYPE glsa SYSTEM "glsa.dtd">
<!-- revision 0.1, using dtd revision 0.1 -->
<glsa id="200307-07" severity="high">
<date>2003-07-19 19:30</date>
<package>net-fs/nfs-utils</package>
<bug>12345</bug>
<affected>
	<version range="below">1.0.4</version>
</affected>
<fixed>
	<version range="above_equal">1.0.4</version>
</fixed>
<exploit>remote</exploit>
<cve>CAN-2003-0252</cve>
<summary>off by one bug</summary>
<description>
quote from advisory:

"Local or remote attacker which is capable to send RPC request to
vulnerable mountd daemon could execute artitrary code or cause
denial of service."
</description>

<solution>
<description>
It is recommended that all Gentoo Linux users who are running
net-fs/nfs-utils upgrade to nfs-utils-1.0.5 as follows

emerge sync
emerge nfs-utils
emerge clean
</description>
</solution>
</glsa>
