Impact
The vulnerability lies in nfsd_set_fh_dentry, which inadvertently retains a dentry reference when processing an NFSv3 filehandle that references a V4ROOT export. This leaks kernel memory for every request. The weakness is recognized as a resource leak, aligning with CWE-911.
Affected Systems
The flaw is present in the Linux kernel’s NFS daemon, so any Linux machine running a kernel build before the patch is at risk. No specific kernel version range is supplied; therefore all exposed Linux installations are potentially vulnerable. The patch targets the exportfs_decode_fh_raw and nfsd_set_fh_dentry code paths used for NFSv3 filehandle processing.
Risk and Exploitability
The CVSS score is 5.9, and the EPSS score is < 1%, indicating a very low exploitation probability. The vulnerability is not listed in CISA’s KEV catalog, suggesting no known large‑scale campaigns. Based on the description, it is inferred that an attacker could craft an NFSv3 filehandle targeting a V4ROOT export's fsid; a remote client would then repeatedly invoke lookups that trigger the leak.
OpenCVE Enrichment
Debian DSA