Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2021-47259

21
FAUCET Score

CVE-2021-47259 is a use-after-free vulnerability in the Linux kernel's NFS client, specifically within the nfs4_init_client() function. This flaw can be triggered when mounting multiple exports from the same server via different network interfaces, affecting Linux kernel versions from 4.13 up to 5.10. It carries a CVSSv3.1 score of 7.5 (High), indicating that a low-privileged attacker can achieve high impact on confidentiality, integrity, and availability with high attack complexity. There is currently no evidence of active exploitation, public exploit code, or significant community discussion surrounding this vulnerability.

Impacted Technologies

VendorProductVersion(s)CPE
>= 4.13, < 4.14.237CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 4.15, < 4.19.195CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 4.20, < 5.4.126CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.5, < 5.10.44CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.11, < 5.12.11CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

7.5HIGH

CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H

Attack Vector
NETWORK
Attack Complexity
HIGH
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
Exploitability Score
1.6
Impact Score
5.9
CvssVersion
3.1

Exploit Intelligence

EPSS Score
1.11%
Probability of exploitation in next 30 days
EPSS Percentile
62.5%
Percentile rank of EPSS score among Peer Group
As of 2026-07-28
Model: v2026.06.15
This CVE's current EPSS score of 0.0111 is in the 60th percentile among its peer group of 1,162 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Vendor Patches (2)

redhatno patchvia redhat_api
Product: Red Hat Enterprise Linux 8Fixed in: kernel
redhatno patchvia redhat_api
Product: Red Hat Enterprise Linux 8Fixed in: kernel-rt

Vendor Advisories (1)

redhatCVE-2021-47259Low

kernel: NFS: Fix use-after-free in nfs4_init_client()

May 21, 2024

References

git.kernel.org / stable/c/3e3c7ebbfac152d08be75c92802a64a1f6471a15
Patch
git.kernel.org / stable/c/42c10b0db064e45f5c5ae7019bbf2168ffab766c
Patch
git.kernel.org / stable/c/476bdb04c501fc64bf3b8464ffddefc8dbe01577
Patch
git.kernel.org / stable/c/72651c6579a25317a90536181d311c663d0329ab
Patch
git.kernel.org / stable/c/c3b6cf64dfe4ef96e7341508d50d6998da7062c7
Patch
git.kernel.org / stable/c/c7eab9e2d7b4e983ce280276fb920af649955897
Patch