Security Advisory

CVE-2017-7895

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2017-04-28 10:00:00
Last updated 2024-08-05 16:19:29
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

The NFSv2 and NFSv3 server implementations in the Linux kernel through 4.10.13 lack certain checks for the end of a buffer, which allows remote attackers to trigger pointer-arithmetic errors or possibly have unspecified other impact via crafted requests, related to fs/nfsd/nfs3xdr.c and fs/nfsd/nfsxdr.c.