← Back

CVE-2012-2375

nvd nist
Published: Jun 13, 2012Modified: Apr 29, 2026

JSON object

Loading...
4.6
Vector
AV:A/AC:H/Au:N/C:N/I:N/A:C
Exploitability: 3.2 / Impact: 6.9
Source: NVD

Description

The __nfs4_get_acl_uncached function in fs/nfs/nfs4proc.c in the NFSv4 implementation in the Linux kernel before 3.3.2 uses an incorrect length variable during a copy operation, which allows remote NFS servers to cause a denial of service (OOPS) by sending an excessive number of bitmap words in an FATTR4_ACL reply. NOTE: this vulnerability exists because of an incomplete fix for CVE-2011-4131.

Affected (9)

Products: Linux: Linux Kernel
1 product
Linux Kernel
Configuration A
9 vulnerable
Vulnerable SoftwareAffected Versions
Linux
Up to 3.3.1
Version 3.3
Version 3.3 rc1
Version 3.3 rc2
Version 3.3 rc3
Version 3.3 rc4
Version 3.3 rc5
Version 3.3 rc6
Version 3.3 rc7

Related CWEs

Timeline

No history available yet.