Home

Description

In the Linux kernel, the following vulnerability has been resolved: nvme-tcp: don't access released socket during error recovery While the error recovery work is temporarily failing reconnect attempts, running the 'nvme list' command causes a kernel NULL pointer dereference by calling getsockname() with a released socket. During error recovery work, the nvme tcp socket is released and a new one created, so it is not safe to access the socket without proper check.

PUBLISHED Reserved 2025-10-07 | Published 2025-10-07 | Updated 2025-10-07 | Assigner Linux

Product status

Default status
unaffected

02c57a82c0081141abc19150beab48ef47f97f18 before fe2d9e54165dadaa0d0cc3355c0be9c3e129fa0d
affected

02c57a82c0081141abc19150beab48ef47f97f18 before d82f762db4776fa11de88018f0f5de2d5db72a72
affected

02c57a82c0081141abc19150beab48ef47f97f18 before 76d54bf20cdcc1ed7569a89885e09636e9a8d71d
affected

Default status
affected

6.1
affected

Any version before 6.1
unaffected

6.1.18
unaffected

6.2.5
unaffected

6.3
unaffected

References

git.kernel.org/...c/fe2d9e54165dadaa0d0cc3355c0be9c3e129fa0d

git.kernel.org/...c/d82f762db4776fa11de88018f0f5de2d5db72a72

git.kernel.org/...c/76d54bf20cdcc1ed7569a89885e09636e9a8d71d

cve.org (CVE-2023-53643)

nvd.nist.gov (CVE-2023-53643)

Download JSON