Lucene search

K
redhatcveRedhat.comRH:CVE-2021-47168
HistoryMar 25, 2024 - 4:55 p.m.

CVE-2021-47168

2024-03-2516:55:49
redhat.com
access.redhat.com
4
linux kernel
nfs
vulnerability

EPSS

0

Percentile

13.0%

A vulnerability was found in the NFS implementation in Linux Kernel causing memory corruption due to an incorrect size limit in filelayout_decode_layout(). Using “sizeof(struct nfs_fh)” instead of NFS_MAXFHSIZE led to buffer overflow by two bytes leads to potential memory corruption.

Mitigation

Red Hat has investigated whether a possible mitigation exists for this issue, and has not been able to identify a practical example. Please update the affected package as soon as possible.