CVE-2024-36958
בינונית 5.5
תיאור (מקור, אנגלית)
In the Linux kernel, the following vulnerability has been resolved: NFSD: Fix nfsd4_encode_fattr4() crasher Ensure that args.acl is initialized early. It is used in an unconditional call to kfree() on the way out of nfsd4_encode_fattr4().
מדדים
- CVSS 3.1
-
5.5 (MEDIUM)
מקור הציון: NVD
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H - EPSS — סבירות ניצול
- 0% (אחוזון 000) נכון ל-4/8/2026
מוצרים מושפעים
linux: linux kernel; netapp: converged systems advisor agent; netapp: solidfire \& hci management node; netapp: solidfire \& hci storage node; netapp: hci compute node; netapp: h300s firmware; netapp: h300s; netapp: h500s firmware; netapp: h500s; netapp: h700s firmware; netapp: h700s; netapp: h410c firmware; netapp: h410c; netapp: h410s firmware; netapp: h410s
קישורים
- https://git.kernel.org/stable/c/18180a4550d08be4eb0387fe83f02f703f92d4e7 Patch
- https://git.kernel.org/stable/c/6a7b07689af6e4e023404bf69b1230f43b2a15bc Patch
- https://git.kernel.org/stable/c/18180a4550d08be4eb0387fe83f02f703f92d4e7 Patch
- https://git.kernel.org/stable/c/6a7b07689af6e4e023404bf69b1230f43b2a15bc Patch
- https://security.netapp.com/advisory/ntap-20250404-0007/ Third Party Advisory