nfs-utils-1.0.9-60.AXS3

エラータID: AXSA:2012-253:01

Release date: 
Wednesday, March 7, 2012 - 21:47
Subject: 
nfs-utils-1.0.9-60.AXS3
Affected Channels: 
Asianux Server 3 for x86
Asianux Server 3 for x86_64
Severity: 
High
Description: 

The nfs-utils package provides a daemon for the kernel NFS server and related tools, which provides a much higher level of performance than the traditional Linux NFS server used by most users.
This package also contains the showmount program. Showmount queries the mount daemon on a remote host for information about the NFS (Network File System) server on the remote host. For example, showmount can display the clients which are mounted on that host.
This package also contains the mount.nfs and umount.nfs program.
Security issues fixed with this release:
CVE-2011-1749
No information available at the time of writing, please refer to the CVE links below.
Fixed bugs:
• If the NFSv1, NFSv2, and NFSv4 support was disabled (the MOUNTD_NFS_V1=no, MOUNTD_NFS_V2=no MOUNTD_NFS_V3=no lines in /etc/sysconfig/nfs were uncommented), the nfs service would fail to start. This has been fixed.
• Removed excessive logging in the /var/log/messages file if a user's Kerberos ticket expired.
• The crash simulation (SM_SIMU_CRASH) of the rpc.statd service had a vulnerability that ISS (Internet Security Scanner) could detect. the rpc.statd would then crash with the following error:
rpc.statd[xxxx]: recv_rply: can't decode RPC message! rpc.statd[xxxx]: *** SIMULATING CRASH! *** rpc.statd[xxxx]: unable to register (statd, 1, udp).
• Simulation crash support has been removed and the problem no longer occurs.
• Previously, the nfs-utils init scripts returned incorrect status codes in the following cases:
   – if the rpcgssd and rpcsvcgssd daemon were not configured
   – if the rpcgssd and rpcsvcgssd daemon were provided an unknown argument,
   – if the rpcgssd and rpcsvcgssd daemon function call failed,
   – if a program was no longer running and a /var/lock/subsys/$SERVICE file existed,
   – if starting a service under an unprivileged user,
   – if a program was no longer running and its pid file still existed in the /var/run/ directory.
The correct codes are now returned in these scenarios.
• Fixed nfsstat -m command not displaying NFSv4 mounts.
• Removed the unsupported fsc mount option from the man pages.
• The nfs-utils preinstall scriptlet has been modified so that it changes the default group ID for the nfsnobody user to 65534 as expected.
• The mount.nfs command with the -o retry option did not try to mount for the time specified in the retry=X configuration option; this has been fixed.
Enhancement:
• Added the noresvport option: it allows NFS clients to use insecure ports (ports above 1023).

Solution: 

Update packages.

Additional Info: 

N/A

Download: 

SRPMS
  1. nfs-utils-1.0.9-60.AXS3.src.rpm
    MD5: 6110c16137d5bc57616ea10a9a98115c
    SHA-256: f5d98fffa9c531f3ac07af2342e24a6597201b59b575d3cf662bc9f80f550f3a
    Size: 729.89 kB

Asianux Server 3 for x86
  1. nfs-utils-1.0.9-60.AXS3.i386.rpm
    MD5: a3eabcfbde5092f05a57cd94abf1dd7d
    SHA-256: 2de36a39ef70e65a5511af3c160f2a824e8764f2bae3bc4a4328ef66e329b9b1
    Size: 403.60 kB

Asianux Server 3 for x86_64
  1. nfs-utils-1.0.9-60.AXS3.x86_64.rpm
    MD5: d8cd6ac1617bea4697421dfbe9837563
    SHA-256: 92d8874ce94339b7cc17fee24b0069fdb62d9e758d0885b2ddd07aee3a5f6495
    Size: 410.90 kB