In the Linux kernel, the following vulnerability has been resolved:

NFSD: Fix nfsd4_encode_fattr4() crasher

Ensure that args.acl is initialized early. It is used in an
unconditional call to kfree() on the way out of
nfsd4_encode_fattr4().
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Sat, 05 Apr 2025 00:00:00 +0000

Type Values Removed Values Added
References

cve-icon MITRE

Status: PUBLISHED

Assigner: Linux

Published:

Updated: 2025-05-04T09:12:49.774Z

Reserved: 2024-05-30T15:25:07.080Z

Link: CVE-2024-36958

cve-icon Vulnrichment

Updated: 2025-04-04T23:03:04.876Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-05-30T16:15:18.673

Modified: 2025-04-04T23:15:41.430

Link: CVE-2024-36958

cve-icon Redhat

Severity : Low

Publid Date: 2024-05-30T00:00:00Z

Links: CVE-2024-36958 - Bugzilla

cve-icon OpenCVE Enrichment

Updated: 2025-07-12T22:45:11Z