Linux kernel
cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*, +4 more
A vulnerability in the Linux kernel's lockd component has been addressed. The issue arose because the vfs_lock_file function required the file_lock structure to be fully initialized by the caller. It was observed that the re-exported NFSv3 could crash (Oops) if the fl_file field was left NULL. This vulnerability affects the Linux kernel stable tree.
The vulnerability could lead to a system crash (Oops) when using the re-exported NFSv3, due to the improper handling of file locks.
The vulnerability can be reproduced by using the re-exported NFSv3 with a file that has not been properly locked, leading to a crash when the system attempts to unlock it.
Users can upgrade to the latest version of the Linux kernel stable tree, where this vulnerability has been fixed.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.