Candidate: CVE-2008-4552 PublicDate: 2008-10-14 20:00:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-4552 https://ubuntu.com/security/notices/USN-687-1 Description: The good_client function in nfs-utils 1.0.9, and possibly other versions before 1.1.3, invokes the hosts_ctl function with the wrong order of arguments, which causes TCP Wrappers to ignore netgroups and allows remote attackers to bypass intended access restrictions. Ubuntu-Description: Notes: Bugs: Priority: medium Discovered-by: Assigned-to: CVSS: Patches_nfs-utils: upstream_nfs-utils: released (1.1.3) dapper_nfs-utils: released (1:1.0.7-3ubuntu2.1) gutsy_nfs-utils: released (1:1.1.1~git-20070709-3ubuntu1.1) hardy_nfs-utils: released (1:1.1.2-2ubuntu2.2) intrepid_nfs-utils: released (1:1.1.2-4ubuntu1.1) devel_nfs-utils: released (1:1.1.4-1ubuntu1)