PublicDate: 2007-09-05 01:17:00 UTC Candidate: CVE-2007-4135 References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-4135 Description: The NFSv4 ID mapper (nfsidmap) before 0.17 does not properly handle return values from the getpwnam_r function when performing a username lookup, which can cause it to report a file as being owned by "root" instead of "nobody" if the file exists on the server but not on the client. Ubuntu-Description: Notes: jdstrand> fix in RHSA-2007:0951-01 Bugs: https://bugs.launchpad.net/ubuntu/+source/libnfsidmap/+bug/175317 Priority: low Discovered-by: Assigned-to: CVSS: upstream_libnfsidmap: released (0.17) dapper_libnfsidmap: ignored (reached end-of-life) edgy_libnfsidmap: needed (reached end-of-life) feisty_libnfsidmap: released (0.18-0build1) gutsy_libnfsidmap: released (0.19-0) hardy_libnfsidmap: released (0.19-0) intrepid_libnfsidmap: released (0.19-0) jaunty_libnfsidmap: released (0.19-0) karmic_libnfsidmap: released (0.19-0) lucid_libnfsidmap: released (0.19-0) maverick_libnfsidmap: released (0.19-0) natty_libnfsidmap: released (0.19-0) devel_libnfsidmap: released (0.19-0)