Short Name |
NFS:INVALID:BAD-CRED-LEN |
---|---|
Severity |
Critical |
Recommended |
No |
Category |
NFS |
Release Date |
2003/04/22 |
Update Number |
1213 |
Supported Platforms |
idp-4.0+, isg-3.0+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+ |
This protocol anomaly is an NFS packet with an authentication scheme of AUTH_DES that has a credential mismatch; the sum of all RPC credential fields does not match the value in the credential length field.
If the AUTH_DES scheme is enabled, and the declared authentication-length value does not match the actual size of the authentication token field, this constitutes a protocol anomaly which may indicate a network configuration error. It could also indicate a malicious attempt to execute an attack against the affected network via injection of malformed RPC datagrams. The impact of such malformed packets depends entirely upon the implementation of NFS that handles them.