Database/Control plane, storage & DevOps
Linux NFS server (nfsd, SECINFO_NO_NAME decode): A truncated SECINFO_NO_NAME operation leaves sin_exp uninitialized and
CVSS 9.8CVE-2026-53398Control plane, storage & DevOpscurated
Impact
A truncated SECINFO_NO_NAME operation leaves sin_exp uninitialized and the error path then acts on it, corrupting kernel memory on the file server. A malformed compound from an unauthenticated client is enough.
Who can reach it
Any host that can send NFSv4 traffic to the server's RPC port.
What to do
Update the storage server kernel to one with the decode cleanup fix and reboot.
References
Related entries
- Airflow FAB provider: Azure AD login accepted unsigned ID tokens, allowing login as AdminCVE-2026-59243 · Apache Airflow FAB auth manager (Azure AD OAuth ID token validation)Critical
- VMware vCenter (VMware Directory Service authentication bypass): An unauthenticated attacker with network accessCVE-2026-59309 · VMware vCenter (VMware Directory Service authentication bypass)Critical
- VMware vCenter (Syslog server directory traversal to RCE): Directory traversal in the vCenter syslog server lettingCVE-2026-59310 · VMware vCenter (Syslog server directory traversal to RCE)Critical
- Gitea: unauthenticated remote code execution via the diffpatch API installing Git hooksCVE-2026-60004 · Gitea (diffpatch API / Git hook installation)Critical
- JetBrains TeamCity: Deserialization in the agent polling protocolCVE-2026-63077 · JetBrains TeamCityCritical
- Windows iSCSI Target Service (Windows Server 2012 through Windows Server 2025 / Windows 10 1607+): Three heap-basedCVE-2026-65791 · Windows iSCSI Target Service (Windows Server 2012 through Windows Server 2025 / Windows 10 1607+)Critical
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.