Computer Security
autofs privilege escalation
SecurityVulns ID:8562
Threat Level:
Description:nosuid and nodev flags are not specified for NFS.
Affected:AUTOFS : autofs 5.0
CVE:CVE-2007-6285 (The default configuration for autofs 5 (autofs5) on Red Hat Enterprise Linux (RHEL) 4 and 5 does not specify the nodev mount option for the -hosts map, which allows local users to access "important devices" by operating a remote NFS server and creating special device files on that server.)

