Impact
The vulnerability is a race condition in the Linux kernel’s NFS daemon layout fence worker. It allows the breaker to duplicate a reference to a layout state identifier that is never released. This creates a reference‑counting leak, causing the layout stateid to persist beyond its intended lifetime.
Affected Systems
All configurations that use the Linux kernel and its NFS daemon are potentially impacted because the fault exists in kernel workqueue code used by NFS. The specific kernel version range is not enumerated, so any kernel build without the patch is at risk.
Risk and Exploitability
The CVSS score of 9.8 categorizes the flaw as critical, and the EPSS score of < 1% indicates a low probability of real‑world exploitation at the time of this analysis. The flaw is not listed in the CISA KEV catalog. An attacker who can send NFS requests that trigger the race may obtain an unreleased reference, potentially increasing kernel resource usage. The available information does not describe direct denial‑of‑service or code execution capabilities.
OpenCVE Enrichment