← Vulnerability feed

Vulnerability record · CVE-2003-0252 · published 18 August 2003

CVE-2003-0252: Linux-nfs nfs-utils vulnerability

LLinux Nfs · Nfs Utils

Off-by-one error in the xlog function of mountd in the Linux NFS utils package (nfs-utils) before 1.0.4 allows remote attackers to cause a denial of service and possibly execute arbitrary code via certain RPC requests to mountd that do not contain newlines.

9.8 CVSS 3.1 Critical EPSS 16% · top 3.2% CWE-193 · CWE-193
9.8CVSS 3.1 base score, v2 10.0
16%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
38References, 4 tagged exploit
16 Jun 2026Last modified by NVD

Description

Off-by-one error in the xlog function of mountd in the Linux NFS utils package (nfs-utils) before 1.0.4 allows remote attackers to cause a denial of service and possibly execute arbitrary code via certain RPC requests to mountd that do not contain newlines.

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

LinkTags
http://archives.neohapsis.com/archives/vulnwatch/2003-q3/0023.html Broken LinkVendor Advisory
http://archives.neohapsis.com/archives/vulnwatch/2003-q3/0024.html Broken LinkVendor Advisory
http://isec.pl/vulnerabilities/isec-0010-linux-nfs-utils.txt ExploitThird Party Advisory
http://marc.info/?l=bugtraq&m=105820223707191&w=2 ExploitMailing List
http://marc.info/?l=bugtraq&m=105830921519513&w=2 Mailing ListPatch
http://marc.info/?l=bugtraq&m=105839032403325&w=2 Mailing List
http://secunia.com/advisories/9259 Broken Link
http://securitytracker.com/id?1007187 Broken LinkThird Party AdvisoryVDB Entry
http://sunsolve.sun.com/search/document.do?assetkey=1-77-1001262.1-1 Broken Link
http://www.debian.org/security/2003/dsa-349 Broken Link
http://www.kb.cert.org/vuls/id/258564 Third Party AdvisoryUS Government Resource
http://www.mandriva.com/security/advisories?name=MDKSA-2003:076 Third Party Advisory
http://www.novell.com/linux/security/advisories/2003_031_nfs_utils.html Broken Link
http://www.redhat.com/support/errata/RHSA-2003-206.html Broken Link
http://www.redhat.com/support/errata/RHSA-2003-207.html Broken Link
http://www.securityfocus.com/bid/8179 Broken LinkThird Party AdvisoryVDB Entry
http://www.turbolinux.com/security/TLSA-2003-44.txt Broken Link
https://exchange.xforce.ibmcloud.com/vulnerabilities/12600 Third Party AdvisoryVDB Entry
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A443 Broken Link
http://archives.neohapsis.com/archives/vulnwatch/2003-q3/0023.html Broken LinkVendor Advisory
http://archives.neohapsis.com/archives/vulnwatch/2003-q3/0024.html Broken LinkVendor Advisory
http://isec.pl/vulnerabilities/isec-0010-linux-nfs-utils.txt ExploitThird Party Advisory
http://marc.info/?l=bugtraq&m=105820223707191&w=2 ExploitMailing List
http://marc.info/?l=bugtraq&m=105830921519513&w=2 Mailing ListPatch
http://marc.info/?l=bugtraq&m=105839032403325&w=2 Mailing List
http://secunia.com/advisories/9259 Broken Link
http://securitytracker.com/id?1007187 Broken LinkThird Party AdvisoryVDB Entry
http://sunsolve.sun.com/search/document.do?assetkey=1-77-1001262.1-1 Broken Link
http://www.debian.org/security/2003/dsa-349 Broken Link
http://www.kb.cert.org/vuls/id/258564 Third Party AdvisoryUS Government Resource
http://www.mandriva.com/security/advisories?name=MDKSA-2003:076 Third Party Advisory
http://www.novell.com/linux/security/advisories/2003_031_nfs_utils.html Broken Link
http://www.redhat.com/support/errata/RHSA-2003-206.html Broken Link
http://www.redhat.com/support/errata/RHSA-2003-207.html Broken Link
http://www.securityfocus.com/bid/8179 Broken LinkThird Party AdvisoryVDB Entry
http://www.turbolinux.com/security/TLSA-2003-44.txt Broken Link
https://exchange.xforce.ibmcloud.com/vulnerabilities/12600 Third Party AdvisoryVDB Entry
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A443 Broken Link

Track CVE-2003-0252 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.8CVE-2019-3689Linux-nfs nfs-utils incorrect default permissions vulnerabilityThe nfs-utils package in SUSE Linux Enterprise Server 12 before and including version 1.3.0-34.18.1 and in SUSE Linux Enterprise Server 15 before and…EPSS 1.5%7.5CVE-2011-2500Linux-nfs nfs-utils permissions and access controls vulnerabilityThe host_reliable_addrinfo function in support/export/hostname.c in nfs-utils before 1.2.4 does not properly use DNS to verify access to NFS exports,…EPSS 2.6%6.5CVE-2025-12801Redhat openshift container platform incorrect permission assignment vulnerabilityA vulnerability was recently discovered in the rpc.mountd daemon in the nfs-utils package for Linux, that allows a NFSv3 client to escalate the privi…EPSS 0.46%3.3CVE-2011-1749Linux-nfs nfs-utils improper input validation vulnerabilityThe nfs_addmntent function in support/nfs/nfs_mntent.c in the mount.nsf tool in nfs-utils before 1.2.4 attempts to append to the /etc/mtab file witho…EPSS 0.35%3.2CVE-2013-1923Linux-nfs nfs-utils information exposure vulnerabilityrpc-gssd in nfs-utils before 1.2.8 performs reverse DNS resolution for server names during GSSAPI authentication, which might allow remote attackers …EPSS 1.0%7.8CVE-2021-3156Sudo off-by-one heap overflow allows root privilege escalationSudo before 1.9.5p2 contains an off-by-one error leading to a heap-based buffer overflow. Triggering it via 'sudoedit -s' with a command-line argumen…KEVEPSS 100%analysed

Source: NIST National Vulnerability Database (record CVE-2003-0252), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.