Files
CVEs-PoC/2020/CVE-2020-29622.md
T
2024-05-25 21:48:12 +02:00

19 lines
888 B
Markdown

### [CVE-2020-29622](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-29622)
![](https://img.shields.io/static/v1?label=Product&message=Security%20Update%20-%20Catalina&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=%3C%202021%20&color=brighgreen)
![](https://img.shields.io/static/v1?label=Vulnerability&message=Mounting%20a%20maliciously%20crafted%20NFS%20network%20share%20may%20lead%20to%20arbitrary%20code%20execution%20with%20system%20privileges&color=brighgreen)
### Description
A race condition was addressed with additional validation. This issue is fixed in Security Update 2021-005 Catalina. Mounting a maliciously crafted NFS network share may lead to arbitrary code execution with system privileges.
### POC
#### Reference
No PoCs from references.
#### Github
- https://github.com/ARPSyndicate/cvemon
- https://github.com/zanezhub/PIA-PC