The NFSv4 server in the Linux kernel before 4.11.3 does not properly validate the layout type when processing the NFSv4 pNFS GETDEVICEINFO or LAYOUTGET operand in a UDP packet from a remote attacker. This type value is uninitialized upon encountering certain error conditions. This value is used as an array index for dereferencing, which leads to an OOPS and eventually a DoS of knfsd and a soft-lockup of the whole system.
CVSS Details
- CVSS 3.1 Base Score: 7.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Centos_linux | — | Upgrade kernelUpgrade kernel-rt | Aug 28, 2019 | Jul 2, 2017 |
| Debian | — | Upgrade linux | Jul 30, 2024 | Jul 2, 2017 |
| Oracle_linux | — | Upgrade kernel | Aug 24, 2017 | Jun 27, 2017 |
| Redhat_linux | — | Upgrade kernelNo solution existsUpgrade kernel-rt | Aug 3, 2017 | Jul 2, 2017 |
| Ubuntu | — | Upgrade linux-lts-xenialUpgrade linux-hwe-edgeUpgrade linuxUpgrade linux-gcpUpgrade linux-hweUpgrade linux-awsUpgrade linux-fipsUpgrade linux-snapdragonUpgrade linux-raspi2 | Nov 19, 2024 | Jul 2, 2017 |
| Vmware Photon_os | — | Use 'tdnf update' to upgrade all packages to the latest version. | Jan 20, 2025 | Jul 2, 2017 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub