CVE-2026-74730
Gravedad:
Pendiente de análisis
Tipo:
No Disponible / Otro tipo
Fecha de publicación:
22/08/2026
Última modificación:
22/08/2026
Descripción
*** Pendiente de traducción *** In the Linux kernel, the following vulnerability has been resolved:<br />
<br />
NFS: Pin the &#39;struct nfs_server&#39; during a FREE_STATEID call<br />
<br />
Dan Aloni reports that he was able to hit a use-after-free bug if a<br />
FREE_STATEID operation gets delayed for whatever reason. Fix this by<br />
bumping the refcount of the &#39;struct nfs_server&#39; object for the duration<br />
of the FREE_STATEID so it doesn&#39;t get cleaned up from underneath us<br />
while operations are still in flight.
Impacto
Referencias a soluciones, herramientas e información
- https://git.kernel.org/stable/c/80ed3d762628b36c9e4b22fac7c65b72ef3b13dd
- https://git.kernel.org/stable/c/af62f1af182d33a0de38308c012841885d8ab92e
- https://git.kernel.org/stable/c/caee6a68ffaa5016dfc01cd0b3dc1896a32e3abd
- https://git.kernel.org/stable/c/cf616096a0f3a2b60f7d68b6b39674a6867ded9c
- https://git.kernel.org/stable/c/d71dfffa512e71b166a889484e4c3b148a9a3af2
- https://git.kernel.org/stable/c/d858ab09e787106432d4d9830bad9dfedf02f890
- https://git.kernel.org/stable/c/ed1161ab6239761958b38d5667225634fc2be894
- https://git.kernel.org/stable/c/ed2f92ce2fc48463c41e0e540b9a3454889e8af8


