0

CVE-2022-21546

In the Linux kernel, the following vulnerability has been resolved:

scsi: target: Fix WRITE_SAME No Data Buffer crash

In newer version of the SBC specs, we have a NDOB bit that indicates there
is no data buffer that gets written out. If this bit is set using commands
like "sg_write_same --ndob" we will crash in target_core_iblock/file's
execute_write_same handlers when we go to access the se_cmd->t_data_sg
because its NULL.

This patch adds a check for the NDOB bit in the common WRITE SAME code
because we don't support it. And, it adds a check for zero SG elements in
each handler in case the initiator tries to send a normal WRITE SAME with
no data buffer.

Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
Diese Information steht angemeldeten Benutzern zur Verfügung.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
Produkt Linux
Default Statusunaffected
Version < 54e57be2573cf0b8bf650375fd8752987b6c3d3b
Version 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Status affected
Version < d8e6a27e9238dd294d6f2f401655f300dca20899
Version 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Status affected
Version < 4226622647e3e5ac06d3ebc1605b917446157510
Version 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Status affected
Version < ccd3f449052449a917a3e577d8ba0368f43b8f29
Version 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Status affected
HerstellerLinux
Produkt Linux
Default Statusaffected
Version <= 5.4.*
Version 5.4.294
Status unaffected
Version <= 5.10.*
Version 5.10.238
Status unaffected
Version <= 5.15.*
Version 5.15.182
Status unaffected
Version <= *
Version 5.19
Status unaffected
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.07% 0.205
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
CWE-476 NULL Pointer Dereference

The product dereferences a pointer that it expects to be valid but is NULL.