The NFSv2/NFSv3 server in the nfsd subsystem in the Linux kernel through 4.10.11 allows remote attackers to cause a denial of service (system crash) via a long RPC reply, related to net/sunrpc/svc.c, fs/nfsd/nfs3xdr.c, and fs/nfsd/nfsxdr.c.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2017-7645.json"
[
{
"signature_type": "Function",
"signature_version": "v1",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@e6838a29ecb484c97e4efef9429643b9851fba6e",
"digest": {
"function_hash": "209240756250297533724216264837006524817",
"length": 1469.0
},
"id": "CVE-2017-7645-47b246a8",
"deprecated": false,
"target": {
"file": "fs/nfsd/nfssvc.c",
"function": "nfsd_dispatch"
}
},
{
"signature_type": "Line",
"signature_version": "v1",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@e6838a29ecb484c97e4efef9429643b9851fba6e",
"digest": {
"line_hashes": [
"31351138676854801894979571890622133263",
"91607506291098370864831053413336256978",
"100523790778086049108089135035602440967",
"129295451568916415010829066456869201181",
"4086454097715550175817852120537136761",
"81819355954886364552234827261366304557"
],
"threshold": 0.9
},
"id": "CVE-2017-7645-8b588112",
"deprecated": false,
"target": {
"file": "fs/nfsd/nfssvc.c"
}
}
]