CVE-2024-53073
published 2024-11-19CVE-2024-53073: In the Linux kernel, the following vulnerability has been resolved: NFSD: Never decrement pending_async_copies on error The error flow in nfsd4_copy() calls…
PriorityP417medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.50%
40.2th percentile
In the Linux kernel, the following vulnerability has been resolved:
NFSD: Never decrement pending_async_copies on error
The error flow in nfsd4_copy() calls cleanup_async_copy(), which
already decrements nn->pending_async_copies.
Affected
13 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 6.11.7-1 (forky) | linux 6.11.7-1 (forky) |
| linux | linux | — | — |
| linux | linux | >= 43e46ee5efc03990b223f7aa8b77aa9c3d3acfdf < 9467c49437e948c541569007cd412d577942e635 | 9467c49437e948c541569007cd412d577942e635 |
| linux | linux | >= 6.10.14 < 6.11 | 6.11 |
| linux | linux | >= 6.11.3 < 6.11.7 | 6.11.7 |
| linux | linux | >= 6a488ad7745b8f64625c6d3a24ce7e448e83f11b < 1421883aa30c5d26bc3370e2d19cb350f0d5ca28 | 1421883aa30c5d26bc3370e2d19cb350f0d5ca28 |
| linux | linux | >= 7ea9260874b779637aff6d24c344b8ef4ac862a0 < 949ee5d44d1fd95119b29b3382a933cdc617bf9e | 949ee5d44d1fd95119b29b3382a933cdc617bf9e |
| linux | linux | >= 9e52ff544e0bfa09ee339fd7b0937ee3c080c24e < ed98d26021db0fe62c327aa9f5e57a90bff3fa94 | ed98d26021db0fe62c327aa9f5e57a90bff3fa94 |
| linux | linux | >= aadc3bbea163b6caaaebfdd2b6c4667fbc726752 < 8286f8b622990194207df9ab852e0f87c60d35e9 | 8286f8b622990194207df9ab852e0f87c60d35e9 |
| linux | linux | >= ae267989b7b7933dfedcd26468d0a88fc3a9da9e < fb79d68a36e21960341ccab07d1ac06d93830321 | fb79d68a36e21960341ccab07d1ac06d93830321 |
| linux | linux_kernel | >= 0 < 6.11.7-1 | 6.11.7-1 |
| linux | linux_kernel | >= 0 < 6.11.7-1 | 6.11.7-1 |
| linux | linux_kernel | >= 6.11.3 < 6.11.7 | 6.11.7 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5LOW
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
kernel: NFSD: Never decrement pending_async_copies on error
vendor_redhat·2024-11-19·CVSS 5.5
CVE-2024-53073 [MEDIUM] CWE-664 kernel: NFSD: Never decrement pending_async_copies on error
kernel: NFSD: Never decrement pending_async_copies on error
In the Linux kernel, the following vulnerability has been resolved:
NFSD: Never decrement pending_async_copies on error
The error flow in nfsd4_copy() calls cleanup_async_copy(), which
already decrements nn->pending_async_copies.
Package: kernel (Red Hat Enterprise Linux 6) - Out of support scope
Package: kernel (Red Hat Enterprise Linux 7) - Out of support scope
Package: kernel-rt (Red Hat Enterprise Linux 7) - Out of support scope
Package: kernel (Red Hat Enterprise Linux 8) - Will not fix
Package: kernel-rt (Red Hat Enterprise Linux 8) - Will not fix
Package: kernel (Red Hat Enterprise Linux 9) - Will not fix
Package: kernel-rt (Red Hat Enterprise Linux 9) - Will not fix
Debian
CVE-2024-53073: linux - In the Linux kernel, the following vulnerability has been resolved: NFSD: Never...
vendor_debian·2024·CVSS 5.5
CVE-2024-53073 [MEDIUM] CVE-2024-53073: linux - In the Linux kernel, the following vulnerability has been resolved: NFSD: Never...
In the Linux kernel, the following vulnerability has been resolved: NFSD: Never decrement pending_async_copies on error The error flow in nfsd4_copy() calls cleanup_async_copy(), which already decrements nn->pending_async_copies.
Scope: local
bookworm: resolved
bullseye: resolved
forky: resolved (fixed in 6.11.7-1)
sid: resolved (fixed in 6.11.7-1)
trixie: resolved (fixed in 6.11.7-1)
GHSA
GHSA-4f73-836m-4mcr: In the Linux kernel, the following vulnerability has been resolved:
NFSD: Never decrement pending_async_copies on error
The error flow in nfsd4_copy
ghsa_unreviewed·2024-11-19
CVE-2024-53073 [MEDIUM] GHSA-4f73-836m-4mcr: In the Linux kernel, the following vulnerability has been resolved:
NFSD: Never decrement pending_async_copies on error
The error flow in nfsd4_copy
In the Linux kernel, the following vulnerability has been resolved:
NFSD: Never decrement pending_async_copies on error
The error flow in nfsd4_copy() calls cleanup_async_copy(), which
already decrements nn->pending_async_copies.
OSV
CVE-2024-53073: In the Linux kernel, the following vulnerability has been resolved: NFSD: Never decrement pending_async_copies on error The error flow in nfsd4_copy()
osv·2024-11-19·CVSS 5.5
CVE-2024-53073 [MEDIUM] CVE-2024-53073: In the Linux kernel, the following vulnerability has been resolved: NFSD: Never decrement pending_async_copies on error The error flow in nfsd4_copy()
In the Linux kernel, the following vulnerability has been resolved: NFSD: Never decrement pending_async_copies on error The error flow in nfsd4_copy() calls cleanup_async_copy(), which already decrements nn->pending_async_copies.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://git.kernel.org/stable/c/1421883aa30c5d26bc3370e2d19cb350f0d5ca28https://git.kernel.org/stable/c/8286f8b622990194207df9ab852e0f87c60d35e9https://git.kernel.org/stable/c/9467c49437e948c541569007cd412d577942e635https://git.kernel.org/stable/c/949ee5d44d1fd95119b29b3382a933cdc617bf9ehttps://git.kernel.org/stable/c/ed98d26021db0fe62c327aa9f5e57a90bff3fa94https://git.kernel.org/stable/c/fb79d68a36e21960341ccab07d1ac06d93830321
2024-11-19
Published