Home

Description

In the Linux kernel, the following vulnerability has been resolved: nvmet-tcp: add bounds check on Transfer Tag ttag is used as an index to get cmd in nvmet_tcp_handle_h2c_data_pdu(), add a bounds check to avoid out-of-bounds access.

PUBLISHED Reserved 2025-12-24 | Published 2025-12-24 | Updated 2026-01-02 | Assigner Linux

Product status

Default status
unaffected

872d26a391da92ed8f0c0f5cb5fef428067b7f30 (git) before 0d150ccd55dbfad36f55855b40b381884c98456e
affected

872d26a391da92ed8f0c0f5cb5fef428067b7f30 (git) before d5bb45f47b37d10f010355686b28c9ebacb361d4
affected

872d26a391da92ed8f0c0f5cb5fef428067b7f30 (git) before ec8adf767e1cfa7031f853b8c71ba1963f07df15
affected

872d26a391da92ed8f0c0f5cb5fef428067b7f30 (git) before fcf82e4553db911d10234ff2390cfd0e2aa854e4
affected

872d26a391da92ed8f0c0f5cb5fef428067b7f30 (git) before 752593d04637ebdc87fd29cba81897f21ae053f0
affected

872d26a391da92ed8f0c0f5cb5fef428067b7f30 (git) before b6a545ffa2c192b1e6da4a7924edac5ba9f4ea2b
affected

Default status
affected

5.0
affected

Any version before 5.0
unaffected

5.4.220 (semver)
unaffected

5.10.150 (semver)
unaffected

5.15.75 (semver)
unaffected

5.19.17 (semver)
unaffected

6.0.3 (semver)
unaffected

6.1 (original_commit_for_fix)
unaffected

References

git.kernel.org/...c/0d150ccd55dbfad36f55855b40b381884c98456e

git.kernel.org/...c/d5bb45f47b37d10f010355686b28c9ebacb361d4

git.kernel.org/...c/ec8adf767e1cfa7031f853b8c71ba1963f07df15

git.kernel.org/...c/fcf82e4553db911d10234ff2390cfd0e2aa854e4

git.kernel.org/...c/752593d04637ebdc87fd29cba81897f21ae053f0

git.kernel.org/...c/b6a545ffa2c192b1e6da4a7924edac5ba9f4ea2b

cve.org (CVE-2022-50717)

nvd.nist.gov (CVE-2022-50717)

Download JSON