CVE-2026-89689
- EPSS 0.61%
- Veröffentlicht 11.09.2026 19:46:09
- Zuletzt bearbeitet 13.09.2026 07:17:34
In the Linux kernel, the following vulnerability has been resolved: nfsd: don't free session slots that are still in use nfsd4_sequence() can free the very slot it is currently processing. When the session shrinker has reduced se_target_maxslots be...
CVE-2026-89687
- EPSS 0.47%
- Veröffentlicht 11.09.2026 19:46:08
- Zuletzt bearbeitet 13.09.2026 07:17:34
In the Linux kernel, the following vulnerability has been resolved: nfsd: ensure nfsd_file_do_acquire() does not use a non-opened file ->atomic_open is permitted to return success without actually opening the file. It indicates this by calling fin...
CVE-2026-89685
- EPSS 0.43%
- Veröffentlicht 11.09.2026 19:46:07
- Zuletzt bearbeitet 21.09.2026 14:17:25
In the Linux kernel, the following vulnerability has been resolved: nfsd: fix clock domain mismatch in clients_still_reclaiming() clients_still_reclaiming() computes a deadline from nn->boot_time (CLOCK_REALTIME, ~1.7 billion) but compares it again...
CVE-2026-89686
- EPSS 0.67%
- Veröffentlicht 11.09.2026 19:46:07
- Zuletzt bearbeitet 13.09.2026 07:17:34
In the Linux kernel, the following vulnerability has been resolved: nfsd: fix BUG_ON in nfsd4_alloc_layout_stateid on racing delegation revoke nfsd4_alloc_layout_stateid reads fp->fi_deleg_file without holding fi_lock when the parent stateid is a d...
CVE-2026-89684
- EPSS 0.45%
- Veröffentlicht 11.09.2026 19:46:06
- Zuletzt bearbeitet 14.09.2026 13:19:19
In the Linux kernel, the following vulnerability has been resolved: nfsd: fix cpntf publish race in nfs4_init_cp_state nfs4_alloc_init_cpntf_state() published the new cpntf entry into the s2s_cp_stateids IDR (with cs_type set) in one s2s_cp_lock se...
- EPSS 0.18%
- Veröffentlicht 11.09.2026 19:46:05
- Zuletzt bearbeitet 11.09.2026 20:19:55
In the Linux kernel, the following vulnerability has been resolved: nfsd: fix dentry ref leak on V4ROOT export filehandle lookup nfsd_set_fh_dentry() leaks the dentry reference from exportfs_decode_fh_raw() when the NFS3_FHSIZE or NFS_FHSIZE switch...
CVE-2026-89681
- EPSS 0.38%
- Veröffentlicht 11.09.2026 19:46:04
- Zuletzt bearbeitet 13.09.2026 07:17:33
In the Linux kernel, the following vulnerability has been resolved: nfsd: fix layout fence worker double-reference race The workqueue core clears WORK_STRUCT_PENDING before the callback is invoked, so delayed_work_pending() in lm_breaker_timedout()...
CVE-2026-89682
- EPSS 0.4%
- Veröffentlicht 11.09.2026 19:46:04
- Zuletzt bearbeitet 13.09.2026 07:17:34
In the Linux kernel, the following vulnerability has been resolved: nfsd: fix fcache_disposal UAF by inlining dispose state into nfsd_net nfsd_file_dispose_list_delayed() defers fput() to nfsd service threads via a per-net freeme queue, preventing ...
CVE-2026-89680
- EPSS 0.64%
- Veröffentlicht 11.09.2026 19:46:03
- Zuletzt bearbeitet 13.09.2026 07:17:33
In the Linux kernel, the following vulnerability has been resolved: nfsd: fix nfsd_file leak on inter-server COPY setup failure When nfsd4_setup_inter_ssc() fails, nfsd4_copy() returns nfserr_offload_denied directly, bypassing the out: label where ...
CVE-2026-89678
- EPSS 0.35%
- Veröffentlicht 11.09.2026 19:46:02
- Zuletzt bearbeitet 13.09.2026 07:17:33
In the Linux kernel, the following vulnerability has been resolved: nfsd: fix partial-write detection in nfsd_direct_write nfsd_direct_write() walks a list of write segments and, after each vfs_iocb_iter_write(), tries to detect a short write so th...