Home

Description

In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Pointer may be dereferenced Klocwork tool reported pointer 'rport' returned from call to function fc_bsg_to_rport() may be NULL and will be dereferenced. Add a fix to validate rport before dereferencing.

PUBLISHED Reserved 2025-05-02 | Published 2025-09-15 | Updated 2025-09-15 | Assigner Linux

Product status

Default status
unaffected

1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 (git) before 005961bd8f066fe931104f67c34ebfcc7f240099
affected

1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 (git) before a69125a3ce88d9a386872034e7664b30cc4bcbed
affected

1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 (git) before 3f22f9ddbb29dba369daddb084be3bacf1587529
affected

1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 (git) before 5addd62586a94a572359418464ce0ae12fa46187
affected

1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 (git) before 0715da51391d223bf4981e28346770edea7eeb74
affected

1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 (git) before b06d1b525364bbcf4929b4b35d81945b10dc9883
affected

1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 (git) before 22b1d7c8bb59c3376430a8bad5840194b12bf29a
affected

1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 (git) before 00eca15319d9ce8c31cdf22f32a3467775423df4
affected

Default status
affected

4.14.322 (semver)
unaffected

4.19.291 (semver)
unaffected

5.4.251 (semver)
unaffected

5.10.188 (semver)
unaffected

5.15.121 (semver)
unaffected

6.1.40 (semver)
unaffected

6.4.5 (semver)
unaffected

6.5 (original_commit_for_fix)
unaffected

References

git.kernel.org/...c/005961bd8f066fe931104f67c34ebfcc7f240099

git.kernel.org/...c/a69125a3ce88d9a386872034e7664b30cc4bcbed

git.kernel.org/...c/3f22f9ddbb29dba369daddb084be3bacf1587529

git.kernel.org/...c/5addd62586a94a572359418464ce0ae12fa46187

git.kernel.org/...c/0715da51391d223bf4981e28346770edea7eeb74

git.kernel.org/...c/b06d1b525364bbcf4929b4b35d81945b10dc9883

git.kernel.org/...c/22b1d7c8bb59c3376430a8bad5840194b12bf29a

git.kernel.org/...c/00eca15319d9ce8c31cdf22f32a3467775423df4

cve.org (CVE-2023-53150)

nvd.nist.gov (CVE-2023-53150)

Download JSON