The NFSv4 server in the Linux kernel before 4.11.3 does not properly validate the layout type when processing the NFSv4 pNFS GETDEVICEINFO or LAYOUTGET operand in a UDP packet from a remote attacker. This type value is uninitialized upon encountering certain error conditions. This value is used as an array index for dereferencing, which leads to an OOPS and eventually a DoS of knfsd and a soft-lockup of the whole system.
CVSS Details
- CVSS 3.1 Base Score: 7.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Centos_linux | — | Upgrade kernel-rtUpgrade kernel | Aug 28, 2019 | Jul 2, 2017 |
| Debian | — | Upgrade linux | Jul 30, 2024 | Jul 2, 2017 |
| Oracle_linux | — | Upgrade kernel | Aug 24, 2017 | Jun 27, 2017 |
| Redhat_linux | — | No solution existsUpgrade kernel-rtUpgrade kernel | Aug 3, 2017 | Jul 2, 2017 |
| Ubuntu | — | Upgrade linux-raspi2Upgrade linux-fipsUpgrade linux-snapdragonUpgrade linux-hwe-edgeUpgrade linuxUpgrade linux-lts-xenialUpgrade linux-awsUpgrade linux-hweUpgrade linux-gcp | Nov 19, 2024 | Jul 2, 2017 |
| Vmware Photon_os | — | Use 'tdnf update' to upgrade all packages to the latest version. | Jan 20, 2025 | Jul 2, 2017 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub