CVE-2025-38430
published 2025-07-25CVE-2025-38430: In the Linux kernel, the following vulnerability has been resolved: nfsd: nfsd4_spo_must_allow() must check this is a v4 compound request If the request being…
medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
In the Linux kernel, the following vulnerability has been resolved:
nfsd: nfsd4_spo_must_allow() must check this is a v4 compound request
If the request being processed is not a v4 compound request, then
examining the cstate can have undefined results.
This patch adds a check that the rpc procedure being executed
(rq_procinfo) is the NFSPROC4_COMPOUND procedure.
Affected
38 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| debian | linux | < linux 6.1.147-1 (bookworm) | linux 6.1.147-1 (bookworm) |
| debian | linux-6.1 | < linux 6.1.147-1 (bookworm) | linux 6.1.147-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | >= ed94164398c935a42be7b129a478eb19c598b68a < bf78a2706ce975981eb5167f2d3b609eb5d24c19 | bf78a2706ce975981eb5167f2d3b609eb5d24c19 |
| linux | linux | >= ed94164398c935a42be7b129a478eb19c598b68a < b1d0323a09a29f81572c7391e0d80d78724729c9 | b1d0323a09a29f81572c7391e0d80d78724729c9 |
| linux | linux | >= ed94164398c935a42be7b129a478eb19c598b68a < 425efc6b3292a3c79bfee4a1661cf043dcd9cf2f | 425efc6b3292a3c79bfee4a1661cf043dcd9cf2f |
| linux | linux | >= ed94164398c935a42be7b129a478eb19c598b68a < 64a723b0281ecaa59d31aad73ef8e408a84cb603 | 64a723b0281ecaa59d31aad73ef8e408a84cb603 |
| linux | linux | >= ed94164398c935a42be7b129a478eb19c598b68a < e7e943ddd1c6731812357a28e7954ade3a7d8517 | e7e943ddd1c6731812357a28e7954ade3a7d8517 |
| linux | linux | >= ed94164398c935a42be7b129a478eb19c598b68a < 7a75a956692aa64211a9e95781af1ec461642de4 | 7a75a956692aa64211a9e95781af1ec461642de4 |
| linux | linux | >= ed94164398c935a42be7b129a478eb19c598b68a < 2c54bd5a380ebf646fb9efbc4ae782ff3a83a5af | 2c54bd5a380ebf646fb9efbc4ae782ff3a83a5af |
| linux | linux | >= ed94164398c935a42be7b129a478eb19c598b68a < 1244f0b2c3cecd3f349a877006e67c9492b41807 | 1244f0b2c3cecd3f349a877006e67c9492b41807 |
| linux | linux_kernel | < 5.4.295 | 5.4.295 |
| linux | linux_kernel | >= 0 < 5.10.244-1 | 5.10.244-1 |
| linux | linux_kernel | >= 0 < 6.1.147-1 | 6.1.147-1 |
| linux | linux_kernel | >= 0 < 6.12.35-1 | 6.12.35-1 |
| linux | linux_kernel | >= 0 < 6.12.35-1 | 6.12.35-1 |
| linux | linux_kernel | >= 0 < 5.15.0-156.166 | 5.15.0-156.166 |
| linux | linux_kernel | >= 0 < 6.8.0-100.100 | 6.8.0-100.100 |
| linux | linux_kernel | >= 5.11 < 5.15.186 | 5.15.186 |
| linux | linux_kernel | >= 5.16 < 6.1.142 | 6.1.142 |
| linux | linux_kernel | >= 5.5 < 5.10.239 | 5.10.239 |
| linux | linux_kernel | >= 6.13 < 6.15.4 | 6.15.4 |
| linux | linux_kernel | >= 6.2 < 6.6.95 | 6.6.95 |
| linux | linux_kernel | >= 6.7 < 6.12.35 | 6.12.35 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.6MEDIUM