CVE-2024-57927

MEDIUM

Linux Kernel 6.12-6.12.10 - NULL Pointer Dereference in nfs_netfs_init_request

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: nfs: Fix oops in nfs_netfs_init_request() when copying to cache When netfslib wants to copy some data that has just been read on behalf of nfs, it creates a new write request and calls nfs_netfs_init_request() to initialise it, but with a NULL file pointer. This causes nfs_file_open_context() to oops - however, we don't actually need the nfs context as we're only going to write to the cache. Fix this by just returning if we aren't given a file pointer and emit a warning if the request was for something other than copy-to-cache. Further, fix nfs_netfs_free_request() so that it doesn't try to free the context if the pointer is NULL.

Scores

CVSS v3 5.5
EPSS 0.0017
EPSS Percentile 6.6%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-476
Status published
Products (9)
linux/Kernel 6.12.0 - 6.12.10linux
Linux/Linux < 6.12
Linux/Linux 6.12
Linux/Linux 6.12.10 - 6.12.*
Linux/Linux 6.13
Linux/Linux ee4cdf7ba857a894ad1650d6ab77669cbbfa329e - 13a07cc81e2d116cece727a83746c74b87a9d417
Linux/Linux ee4cdf7ba857a894ad1650d6ab77669cbbfa329e - 86ad1a58f6a9453f49e06ef957a40a8dac00a13f
linux/linux_kernel 6.13 rc1 (6 CPE variants)
linux/linux_kernel 6.12 - 6.12.10
Published Jan 19, 2025
Tracked Since Feb 18, 2026