CVE-2026-89711
- EPSS 0.4%
- Veröffentlicht 11.09.2026 19:46:26
- Zuletzt bearbeitet 14.09.2026 13:19:20
In the Linux kernel, the following vulnerability has been resolved: NFSD: remove flawed WARN_ON_ONCE from nfsd_mode_check The header for commit e75b23f9e323 ("nfsd: check d_can_lookup in fh_verify of directories") details the assumption that justif...
- EPSS 0.17%
- Veröffentlicht 11.09.2026 19:46:25
- Zuletzt bearbeitet 14.09.2026 13:19:20
In the Linux kernel, the following vulnerability has been resolved: NFSv4.1: fix layout segment leak on the pnfs_layout_process() forget path When the server returns a new layout stateid while a valid one is still held, pnfs_layout_process() calls ...
CVE-2026-89708
- EPSS 0.44%
- Veröffentlicht 11.09.2026 19:46:24
- Zuletzt bearbeitet 21.09.2026 14:17:25
In the Linux kernel, the following vulnerability has been resolved: nfsd: RCU-protect cl_cb_session to fix use-after-free on session teardown After a DESTROY_SESSION the per-session teardown path can free a session while rpciod still holds an infli...
CVE-2026-89709
- EPSS 0.33%
- Veröffentlicht 11.09.2026 19:46:24
- Zuletzt bearbeitet 13.09.2026 07:17:36
In the Linux kernel, the following vulnerability has been resolved: lockd, nfsd: RCU-protect nlmsvc_ops dispatch nlmsvc_ops is published by nfsd_lockd_init() and cleared by nfsd_lockd_shutdown() with plain stores, while lockd dereferences it unguar...
CVE-2026-89707
- EPSS 0.6%
- Veröffentlicht 11.09.2026 19:46:23
- Zuletzt bearbeitet 14.09.2026 13:19:20
In the Linux kernel, the following vulnerability has been resolved: nfsd: release path refs on follow_down() error nfsd_cross_mnt() initializes a local struct path with mntget() and dget() before calling follow_down(). On a negative return the erro...
CVE-2026-89706
- EPSS 0.44%
- Veröffentlicht 11.09.2026 19:46:22
- Zuletzt bearbeitet 14.09.2026 13:19:20
In the Linux kernel, the following vulnerability has been resolved: nfsd: Reset write verifier when async COPY writeback fails Async COPY captures nn->writeverf at request time and reports it to the client via CB_OFFLOAD after the worker kthread co...
CVE-2026-89704
- EPSS 0.44%
- Veröffentlicht 11.09.2026 19:46:21
- Zuletzt bearbeitet 14.09.2026 13:19:20
In the Linux kernel, the following vulnerability has been resolved: nfsd: sample writeback error cursor before async COPY loop _nfsd_copy_file_range() samples dst->f_wb_err into "since" after the copy loop, then uses it to detect writeback errors v...
CVE-2026-89705
- EPSS 0.15%
- Veröffentlicht 11.09.2026 19:46:21
- Zuletzt bearbeitet 13.09.2026 07:17:36
In the Linux kernel, the following vulnerability has been resolved: nfsd: restore rq_status_counter to even on all nfsd_dispatch() exit paths nfsd_dispatch() sets rq_status_counter to an odd value once a request has been decoded, and back to an eve...
CVE-2026-89703
- EPSS 0.61%
- Veröffentlicht 11.09.2026 19:46:20
- Zuletzt bearbeitet 13.09.2026 07:17:35
In the Linux kernel, the following vulnerability has been resolved: nfsd: set SC_STATUS_FREED in nfsd4_drop_revoked_stid for delegations nfsd4_drop_revoked_stid() handles FREE_STATEID for admin-revoked delegations but does not set SC_STATUS_FREED b...
CVE-2026-89702
- EPSS 0.46%
- Veröffentlicht 11.09.2026 19:46:19
- Zuletzt bearbeitet 13.09.2026 07:17:35
In the Linux kernel, the following vulnerability has been resolved: nfsd: size fh_verify server sockaddr slot by xpt_locallen The nfsd_fh_verify and nfsd_fh_verify_err tracepoints declare the server sockaddr slot sized by xpt_remotelen but fill it ...