Infinite Loop Vulnerability in Linux Kernel NFSD
CVE-2026-64519
Currently unrated
What is CVE-2026-64519?
A vulnerability in the Linux Kernel's NFSD component can lead to an infinite loop during layout state revocation. The function find_one_sb_stid() bypasses state identifiers with a non-zero status. However, in the case of SC_TYPE_LAYOUT, the state status is not set prior to invoking nfsd4_close_layout(), resulting in a retry loop that continuously identifies the same layout state identifier. This behavior causes the revocation process to hang indefinitely, affecting system performance and stability.
Affected Version(s)
Linux 1e33e1414bec54a4feafa9e67e2617031be0afe2
Linux 1e33e1414bec54a4feafa9e67e2617031be0afe2
Linux 1e33e1414bec54a4feafa9e67e2617031be0afe2 < 44e5e4eb3a07bf3e1d931dd9f96f3edcfa376605