CVE Vulnerabilities

CVE-2012-3417

Published: Aug 13, 2012 | Modified: Feb 13, 2023
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4 MEDIUM
AV:N/AC:H/Au:N/C:P/I:P/A:N
RedHat/V2
4 LOW
AV:N/AC:H/Au:N/C:P/I:P/A:N
RedHat/V3
Ubuntu
LOW

The good_client function in rquotad (rquota_svc.c) in Linux DiskQuota (aka quota) before 3.17 invokes the hosts_ctl function the first time without a host name, which might allow remote attackers to bypass TCP Wrappers rules in hosts.deny.

Affected Software

Name Vendor Start Version End Version
Linux_diskquota Jan_kara * 3.16 (including)
Linux_diskquota Jan_kara 2.0 (including) 2.0 (including)
Linux_diskquota Jan_kara 3.01 (including) 3.01 (including)
Linux_diskquota Jan_kara 3.01-pre2 (including) 3.01-pre2 (including)
Linux_diskquota Jan_kara 3.01-pre3 (including) 3.01-pre3 (including)
Linux_diskquota Jan_kara 3.01-pre4 (including) 3.01-pre4 (including)
Linux_diskquota Jan_kara 3.01-pre5 (including) 3.01-pre5 (including)
Linux_diskquota Jan_kara 3.01-pre6 (including) 3.01-pre6 (including)
Linux_diskquota Jan_kara 3.01-pre7 (including) 3.01-pre7 (including)
Linux_diskquota Jan_kara 3.01-pre8 (including) 3.01-pre8 (including)
Linux_diskquota Jan_kara 3.01-pre9 (including) 3.01-pre9 (including)
Linux_diskquota Jan_kara 3.02 (including) 3.02 (including)
Linux_diskquota Jan_kara 3.03 (including) 3.03 (including)
Linux_diskquota Jan_kara 3.04 (including) 3.04 (including)
Linux_diskquota Jan_kara 3.05 (including) 3.05 (including)
Linux_diskquota Jan_kara 3.06 (including) 3.06 (including)
Linux_diskquota Jan_kara 3.07 (including) 3.07 (including)
Linux_diskquota Jan_kara 3.08 (including) 3.08 (including)
Linux_diskquota Jan_kara 3.09 (including) 3.09 (including)
Linux_diskquota Jan_kara 3.10 (including) 3.10 (including)
Linux_diskquota Jan_kara 3.11 (including) 3.11 (including)
Linux_diskquota Jan_kara 3.12 (including) 3.12 (including)
Linux_diskquota Jan_kara 3.13 (including) 3.13 (including)
Linux_diskquota Jan_kara 3.14 (including) 3.14 (including)
Linux_diskquota Jan_kara 3.15 (including) 3.15 (including)
Red Hat Enterprise Linux 5 RedHat quota-1:3.13-8.el5 *
Quota Ubuntu hardy *
Quota Ubuntu lucid *
Quota Ubuntu upstream *

References