CVE-2026-64519
CVE-2026-64519: 1 tracked advisory record across Red Hat. Compare source-reported impact, fixes and remediation.
Compare the source-linked records below. Ratings and product/version details belong to each advisory; they are not a single CVE-wide score or proof that every listed product is affected. How VulniPulse collects and checks evidence.
Vendor advisory comparison
Red Hat
1 advisory- Advisory severityMedium5.5
Medium [CVE-2026-64519] Fix infinite loop in layout state revocation
CVE-2026-64519Source published Source updated
In the Linux kernel, the following vulnerability has been resolved: NFSD: Fix infinite loop in layout state revocation find_one_sb_stid() skips stids whose sc_status is non-zero, but the SC_TYPE_LAYOUT case in nfsd4_revoke_states() never sets sc_status before calling nfsd4_close_layout(). The retry loop therefore finds the same layout stid on every iteration, hanging the revoker indefinitely. A flaw was found in the Linux kernel's Network File System Daemon (NFSD). This vulnerability allows a remote attacker to cause a Denial of Service (DoS) by triggering an infinite loop during layout state revocation. The issue occurs because the system repeatedly attempts to revoke a layout state without properly updating its status, leading to the revoker hanging indefinitely. Red Hat severity: Low…
- Affected products in this advisory
- Red Hat Enterprise Linux 10
- Red Hat Enterprise Linux 6
- Red Hat Enterprise Linux 9
- Red Hat package: kernel-rt
- Source-reported affected versions
- Affected-version details not available in this record.
- Source-reported fixed versions
- No fixed-version detail extracted. This does not mean no fix exists.
- Mitigation guidance
- If the NFS server functionality is not required, disable the `nfs-server` service to prevent exploitation. ```bash systemctl stop nfs-server systemctl disable nfs-server ``` This action will stop all NFS server operations and prevent them from starting automatically. If the NFS server is in use, consider restricting network access to trusted clients via firewall rules.
Android app · Google Play
Monitor future Red Hat CVEs from your phone.
Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.