-

CVE-2023-53603

In the Linux kernel, the following vulnerability has been resolved:

scsi: qla2xxx: Avoid fcport pointer dereference

Klocwork reported warning of NULL pointer may be dereferenced.  The routine
exits when sa_ctl is NULL and fcport is allocated after the exit call thus
causing NULL fcport pointer to dereference at the time of exit.

To avoid fcport pointer dereference, exit the routine when sa_ctl is NULL.

Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
This information is available to logged-in users.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
VendorLinux
Product Linux
Default Statusunaffected
Version < 4406fe8a96a946c7ea5724ee59625755a1d9c59d
Version 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Status affected
Version < 477bc74ad1add644b606bff6ba1284943c42818a
Version 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Status affected
Version < 7bbeff613ec0560fb2f6f8b405288f3f043adf64
Version 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Status affected
Version < 6b504d06976fe4a61cc05dedc68b84fadb397f77
Version 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Status affected
VendorLinux
Product Linux
Default Statusaffected
Version <= 5.15.*
Version 5.15.121
Status unaffected
Version <= 6.1.*
Version 6.1.40
Status unaffected
Version <= 6.4.*
Version 6.4.5
Status unaffected
Version <= *
Version 6.5
Status unaffected
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.02% 0.031
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string