CVE-2015-8746: Linux Kernel

High severity, CVSS 7.5. EPSS: 3.1% chance of exploitation in the next 30 days.

fs/nfs/nfs4proc.c in the NFS client in the Linux kernel before 4.2.2 does not properly initialize memory for migration recovery operations, which allows remote NFS servers to cause a denial of service (NULL pointer dereference and panic) via crafted network traffic.

Affected products

  • Linux Linux Kernel: up to and including 4.2.1

Published 2016-05-02. Last modified 2026-06-17.