-

CVE-2023-7324

scsi: ses: Fix possible addl_desc_ptr out-of-bounds accesses

In the Linux kernel, the following vulnerability has been resolved:

scsi: ses: Fix possible addl_desc_ptr out-of-bounds accesses

Sanitize possible addl_desc_ptr out-of-bounds accesses in
ses_enclosure_data_process().
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
Produkt Linux
Default Statusunaffected
Version 9927c68864e9c39cc317b4f559309ba29e642168
Version < af5114d824f3511a69d68beff49ca9a7c32d44e0
Status affected
Version 9927c68864e9c39cc317b4f559309ba29e642168
Version < a156a262c543fa5ff30bcb2fc6ad1a95cb4ab57a
Status affected
Version 9927c68864e9c39cc317b4f559309ba29e642168
Version < 8e454aba72805241239caf8ba9b8e5a6be772b96
Status affected
Version 9927c68864e9c39cc317b4f559309ba29e642168
Version < 2ecd344173a5663d523433819da0484cb268b186
Status affected
Version 9927c68864e9c39cc317b4f559309ba29e642168
Version < 384aa697d8f2a28b5e962f5292cdfd2e528b5df7
Status affected
Version 9927c68864e9c39cc317b4f559309ba29e642168
Version < 27067c672980b497cc34048b69b12820851ac6b9
Status affected
Version 9927c68864e9c39cc317b4f559309ba29e642168
Version < b91ef85a32fdba45fcbad87dd526d73d3b6d857d
Status affected
Version 9927c68864e9c39cc317b4f559309ba29e642168
Version < db95d4df71cb55506425b6e4a5f8d68e3a765b63
Status affected
HerstellerLinux
Produkt Linux
Default Statusaffected
Version 2.6.25
Status affected
Version 0
Version < 2.6.25
Status unaffected
Version <= 4.14.*
Version 4.14.308
Status unaffected
Version <= 4.19.*
Version 4.19.276
Status unaffected
Version <= 5.4.*
Version 5.4.235
Status unaffected
Version <= 5.10.*
Version 5.10.173
Status unaffected
Version <= 5.15.*
Version 5.15.99
Status unaffected
Version <= 6.1.*
Version 6.1.16
Status unaffected
Version <= 6.2.*
Version 6.2.3
Status unaffected
Version <= *
Version 6.3
Status unaffected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.04% 0.122
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
Es wurden noch keine Informationen zu CWE veröffentlicht.