In the Linux kernel, the following vulnerability has been resolved:
NFSD: Fix nfsd4_encode_fattr4() crasher
Ensure that args.acl is initialized early. It is used in an
unconditional call to kfree() on the way out of
nfsd4_encode_fattr4().
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
AND |
|
Configuration 4 (hide)
AND |
|
Configuration 5 (hide)
AND |
|
Configuration 6 (hide)
AND |
|
Configuration 7 (hide)
AND |
|
History
01 Oct 2025, 14:07
Type | Values Removed | Values Added |
---|---|---|
References | () https://git.kernel.org/stable/c/18180a4550d08be4eb0387fe83f02f703f92d4e7 - Patch | |
References | () https://git.kernel.org/stable/c/6a7b07689af6e4e023404bf69b1230f43b2a15bc - Patch | |
References | () https://security.netapp.com/advisory/ntap-20250404-0007/ - Third Party Advisory | |
First Time |
Netapp h500s Firmware
Netapp Netapp solidfire \& Hci Management Node Netapp h410s Firmware Netapp hci Compute Node Netapp h700s Firmware Netapp h410c Netapp h500s Netapp h300s Netapp converged Systems Advisor Agent Netapp h300s Firmware Netapp h410s Linux Linux linux Kernel Netapp solidfire \& Hci Storage Node Netapp h410c Firmware Netapp h700s |
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.5 |
CPE | cpe:2.3:o:linux:linux_kernel:6.9:rc2:*:*:*:*:*:* cpe:2.3:o:netapp:hci_compute_node:-:*:*:*:*:*:*:* cpe:2.3:o:netapp:h700s_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:netapp:h410s_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:6.9:rc3:*:*:*:*:*:* cpe:2.3:h:netapp:h500s:-:*:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:6.9:rc6:*:*:*:*:*:* cpe:2.3:h:netapp:h410c:-:*:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:6.9:rc1:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:6.9:rc4:*:*:*:*:*:* cpe:2.3:a:netapp:solidfire_\&_hci_management_node:-:*:*:*:*:*:*:* cpe:2.3:o:netapp:h410c_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* cpe:2.3:h:netapp:h410s:-:*:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:6.9:rc5:*:*:*:*:*:* cpe:2.3:o:netapp:h300s_firmware:-:*:*:*:*:*:*:* cpe:2.3:a:netapp:solidfire_\&_hci_storage_node:-:*:*:*:*:*:*:* cpe:2.3:a:netapp:converged_systems_advisor_agent:-:*:*:*:*:*:*:* cpe:2.3:o:netapp:h500s_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:netapp:h300s:-:*:*:*:*:*:*:* cpe:2.3:h:netapp:h700s:-:*:*:*:*:*:*:* |
|
CWE | NVD-CWE-noinfo |
04 Apr 2025, 23:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
21 Nov 2024, 09:22
Type | Values Removed | Values Added |
---|---|---|
References | () https://git.kernel.org/stable/c/18180a4550d08be4eb0387fe83f02f703f92d4e7 - | |
References | () https://git.kernel.org/stable/c/6a7b07689af6e4e023404bf69b1230f43b2a15bc - | |
Summary |
|
30 May 2024, 16:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-05-30 16:15
Updated : 2025-10-01 14:07
NVD link : CVE-2024-36958
Mitre link : CVE-2024-36958
CVE.ORG link : CVE-2024-36958
JSON object : View
Products Affected
netapp
- h500s_firmware
- h700s_firmware
- converged_systems_advisor_agent
- h410s_firmware
- h700s
- h500s
- h410s
- h410c
- h300s
- h300s_firmware
- h410c_firmware
- solidfire_\&_hci_management_node
- solidfire_\&_hci_storage_node
- hci_compute_node
linux
- linux_kernel
CWE