Description
In the Linux kernel, the following vulnerability has been resolved: nvmet-tcp: add bounds check on Transfer Tag ttag is used as an index to get cmd in nvmet_tcp_handle_h2c_data_pdu(), add a bounds check to avoid out-of-bounds access.
Product status
872d26a391da92ed8f0c0f5cb5fef428067b7f30 (git) before 0d150ccd55dbfad36f55855b40b381884c98456e
872d26a391da92ed8f0c0f5cb5fef428067b7f30 (git) before d5bb45f47b37d10f010355686b28c9ebacb361d4
872d26a391da92ed8f0c0f5cb5fef428067b7f30 (git) before ec8adf767e1cfa7031f853b8c71ba1963f07df15
872d26a391da92ed8f0c0f5cb5fef428067b7f30 (git) before fcf82e4553db911d10234ff2390cfd0e2aa854e4
872d26a391da92ed8f0c0f5cb5fef428067b7f30 (git) before 752593d04637ebdc87fd29cba81897f21ae053f0
872d26a391da92ed8f0c0f5cb5fef428067b7f30 (git) before b6a545ffa2c192b1e6da4a7924edac5ba9f4ea2b
5.0
Any version before 5.0
5.4.220 (semver)
5.10.150 (semver)
5.15.75 (semver)
5.19.17 (semver)
6.0.3 (semver)
6.1 (original_commit_for_fix)
References
git.kernel.org/...c/0d150ccd55dbfad36f55855b40b381884c98456e
git.kernel.org/...c/d5bb45f47b37d10f010355686b28c9ebacb361d4
git.kernel.org/...c/ec8adf767e1cfa7031f853b8c71ba1963f07df15
git.kernel.org/...c/fcf82e4553db911d10234ff2390cfd0e2aa854e4
git.kernel.org/...c/752593d04637ebdc87fd29cba81897f21ae053f0
git.kernel.org/...c/b6a545ffa2c192b1e6da4a7924edac5ba9f4ea2b