CVE-2026-43193

MEDIUM

nfsd: fix nfs4_file refcount leak in nfsd_get_dir_deleg()

Title source: cna
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: nfsd: fix nfs4_file refcount leak in nfsd_get_dir_deleg() Claude pointed out that there is a nfs4_file refcount leak in nfsd_get_dir_deleg(). Ensure that the reference to "fp" is released before returning.

Scores

CVSS v3 5.5
EPSS 0.0001
EPSS Percentile 3.1%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Details

Status published
Products (7)
Linux/Linux < 6.19
Linux/Linux 6.19
Linux/Linux 6.19.6 - 6.19.*
Linux/Linux 7.0
Linux/Linux 8b99f6a8c116f664a6788737705f6da2772cc96a - 0d8362e15aad5b5c1d6a65bb23ac6c45ccf881f3
Linux/Linux 8b99f6a8c116f664a6788737705f6da2772cc96a - 789477b849394afdb60507924d65f7ef18f078ce
linux/linux_kernel 6.19 - 6.19.6
Published May 06, 2026
Tracked Since May 06, 2026