CVE-2015-8746 PUBLISHED

fs/nfs/nfs4proc.c in the NFS client in the Linux kernel before 4.2.2 does not properly initialize memory for migration recovery operations, which allows remote NFS servers to cause a denial of service (NULL pointer dereference and panic) via crafted network traffic.

EPSS 1.87% · 83.0th percentile

Risk Scores

EPSS Score
1.87%
83.0th percentile

Affected Products

VendorProductVersions
Ubuntu:14.04:LTSlinux-lts-vivid0, 3.19.0-18.18~14.04.1, 3.19.0-20.20~14.04.1
Ubuntu:14.04:LTSlinux-lts-utopic3.16.0-37.51~14.04.1, 3.16.0-38.52~14.04.1, 3.16.0-39.53~14.04.1
Ubuntu:14.04:LTSlinux3.13.0-33.58, 3.13.0-34.60, 3.13.0-35.62

Timeline

References

Open in Interactive Console →