CVE-2013-1923: Linux-Nfs Nfs-Utils

Low severity, CVSS 3.2. EPSS: 1% chance of exploitation in the next 30 days.

rpc-gssd in nfs-utils before 1.2.8 performs reverse DNS resolution for server names during GSSAPI authentication, which might allow remote attackers to read otherwise-restricted files via DNS spoofing attacks.

Affected products

  • Linux-Nfs Nfs-Utils: up to and including 1.2.7; version 1.2.0 only; version 1.2.1 only; version 1.2.2 only; version 1.2.3 only; version 1.2.4 only; …

Published 2014-01-21. Last modified 2026-06-16.