COMMAND
nfsd(8)
SYSTEMS AFFECTED
Linux running Universal NFS 2.0 or earlier.
PROBLEM
Read-only export does not work, its only parsed. Users can kill
nsfd. This is because the nsfd seteuid(2) to the current request
uid instead of setfsuid(2)/setfsgid(2). The root_squash and
no_root_squash flags does not work. File handles are easly
guessed. Default exports file contains '#' at the start of file.
Under some broken resolvers this means a machine named '#' can
mount all your disks.
SOLUTION
Upgrade to Universal NSF 2.1 or later.