7.5

CVE-2026-74316

NFSD: Handle layout stid in nfsd4_drop_revoked_stid()

In the Linux kernel, the following vulnerability has been resolved:

NFSD: Handle layout stid in nfsd4_drop_revoked_stid()

nfsd4_drop_revoked_stid() has no SC_TYPE_LAYOUT case, so when a
client sends FREE_STATEID for an admin-revoked layout stid, the
default branch releases cl_lock and returns without unhashing or
releasing the stid.  The stid remains in the IDR and on the
per-client list until the client is destroyed.

Remove the layout stid from the per-client list and call
nfs4_put_stid() to drop the creation reference.  When the
refcount reaches zero, nfsd4_free_layout_stateid() handles the
remaining cleanup: cancelling the fence worker, removing from
the per-file list, and freeing the slab object.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
Produkt Linux
Default Statusunaffected
Version 1e33e1414bec54a4feafa9e67e2617031be0afe2
Version < 7ed62f7040ee182cf7dea5798f9e114235b31dae
Status affected
Version 1e33e1414bec54a4feafa9e67e2617031be0afe2
Version < da6f86ff4f2dd490bea52419a49e19680efd5847
Status affected
Version 1e33e1414bec54a4feafa9e67e2617031be0afe2
Version < 8024028ef91616cf91cc669f2446a0406bc0ba19
Status affected
Version 1e33e1414bec54a4feafa9e67e2617031be0afe2
Version < 86b9898920a6d02b4149f4fef9efd77b8aa3b9ca
Status affected
HerstellerLinux
Produkt Linux
Default Statusaffected
Version 6.9
Status affected
Version 0
Version < 6.9
Status unaffected
Version <= 6.12.*
Version 6.12.97
Status unaffected
Version <= 6.18.*
Version 6.18.40
Status unaffected
Version <= 7.1.*
Version 7.1.5
Status unaffected
Version <= *
Version 7.2
Status unaffected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.45% 0.371
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
416baaa9-dc9f-4396-8d5f-8c081fb06d67 7.5 3.9 3.6
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://git.kernel.org/stable/c/7ed62f7040ee182cf7dea5798f9e114235b31dae
https://git.kernel.org/stable/c/da6f86ff4f2dd490bea52419a49e19680efd5847
https://git.kernel.org/stable/c/8024028ef91616cf91cc669f2446a0406bc0ba19
https://git.kernel.org/stable/c/86b9898920a6d02b4149f4fef9efd77b8aa3b9ca