A flaw incorrect umask during file or directory modification in the Linux kernel NFS (network file system) functionality was found in the way user create and delete object using NFSv4.2 or newer if both simultaneously accessing the NFS by the other process that is not using new NFSv4.2. A user with access to the NFS could use this flaw to starve the resources causing denial of service.
CVSS Details
- CVSS 3.1 Base Score: 4.9
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Centos_linux | — | Upgrade kernelUpgrade kernel-rt | Feb 4, 2021 | Jan 26, 2021 |
| Debian | — | Upgrade linux | Jul 30, 2024 | Jan 26, 2021 |
| Oracle_linux | — | Upgrade kernel | Feb 4, 2021 | Dec 21, 2020 |
| Redhat_linux | — | Upgrade kernel-rtNo solution existsUpgrade kernel | Feb 4, 2021 | Jan 26, 2021 |
| Ubuntu | — | Upgrade linuxUpgrade linux-awsUpgrade linux-gcpUpgrade linux-raspi2Upgrade linux-kvmUpgrade linux-azureUpgrade linux-hwe | Nov 19, 2024 | Jan 26, 2021 |
| Vmware Photon_os | — | Use 'tdnf update' to upgrade all packages to the latest version. | Jan 20, 2025 | Jan 25, 2021 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub