
Cloud Vulnerability DB
A community-led vulnerabilities database
A vulnerability (CVE-2025-39730) was discovered in the Linux kernel affecting the NFS filehandle bounds checking functionality in the nfsfhto_dentry() function. The vulnerability was disclosed on September 7, 2025, and requires addressing the minimal filehandle length verification before accessing the embedded filehandle (NVD).
The vulnerability exists in the nfsfhto_dentry() function of the Linux kernel's NFS implementation. The core issue involves insufficient validation of filehandle bounds before accessing the embedded filehandle data. This security flaw requires proper implementation of length checking mechanisms to prevent potential security issues (NVD).
The vulnerability could potentially lead to security issues related to improper filehandle validation in NFS operations. However, specific impact details have not been fully assessed as the CVSS score is not yet provided by NVD (NVD).
The vulnerability has been resolved through patches in the Linux kernel. Multiple kernel commits have been made to address this security issue, as evidenced by the various patch references in the kernel repository (NVD).
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."