-

CVE-2023-53476

In the Linux kernel, the following vulnerability has been resolved:

iw_cxgb4: Fix potential NULL dereference in c4iw_fill_res_cm_id_entry()

This condition needs to match the previous "if (epcp->state == LISTEN) {"
exactly to avoid a NULL dereference of either "listen_ep" or "ep". The
problem is that "epcp" has been re-assigned so just testing
"if (epcp->state == LISTEN) {" a second time is not sufficient.

Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
This information is available to logged-in users.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
VendorLinux
Product Linux
Default Statusunaffected
Version < 76e0396313c79ecd0df44ee3c18745cfac52b3e6
Version 116aeb8873712ea559d26b0d9d88147af5c88db5
Status affected
Version < 24278dc380aab6a1aef0a75317f57ad4c2453cf6
Version 116aeb8873712ea559d26b0d9d88147af5c88db5
Status affected
Version < dd55240e4364d64befcc575b0d33091881524f42
Version 116aeb8873712ea559d26b0d9d88147af5c88db5
Status affected
Version < 4ca446b127c568b59cb8d9748b6f70499624bb18
Version 116aeb8873712ea559d26b0d9d88147af5c88db5
Status affected
VendorLinux
Product Linux
Default Statusaffected
Version 4.18
Status affected
Version < 4.18
Version 0
Status unaffected
Version <= 5.15.*
Version 5.15.99
Status unaffected
Version <= 6.1.*
Version 6.1.16
Status unaffected
Version <= 6.2.*
Version 6.2.3
Status unaffected
Version <= *
Version 6.3
Status unaffected
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.02% 0.048
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string