CVE-2011-4324: Medium severity linux kernel vulnerability
Creating a file with mknod(2) syscall on a nfsv4 mount can trigger BUG().
Other sources
The encodeshareaccess function in fs/nfs/nfs4xdr.c in the Linux kernel before 2.6.29 allows local users to cause a denial of service (BUG and system crash) by using the mknod system call with a pathname on an NFSv4 filesystem.
— Launchpad
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2011-4324?
CVE-2011-4324 has been identified as a medium severity vulnerability that can lead to a denial of service.
How do I fix CVE-2011-4324?
To fix CVE-2011-4324, it is recommended to upgrade to a Linux kernel version later than 2.6.28.10.
Who is affected by CVE-2011-4324?
Local users running affected versions of the Linux kernel, specifically below 2.6.28.10, are vulnerable to CVE-2011-4324.
What does CVE-2011-4324 exploit?
CVE-2011-4324 exploits the mknod system call on an NFSv4 mount to trigger a kernel bug.
When was CVE-2011-4324 discovered?
CVE-2011-4324 was disclosed on 24 July 2014.