Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [day] [month] [year] [list]
Date: Mon, 3 Jun 2019 12:51:07 +1000
From: Wade Mealing <>
Subject: kernel: CVE-2018-16871 nfs: NULL pointer dereference due to an
 anomalized NFS message sequence

A flaw was found in NFS in the Linux Kernel. An attacker who is able
to mount an exported NFS file system  is able to trigger a null
pointer dereference by an invalid NFS sequence.

This can panic the machine with a null pointer dereference and
therefore deny to the NFS server. Any outstanding disk writes to the
NFS server will be lost.

Upstream fix:

Red Hat bugzilla:


Wade Mealing

Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.