In the Linux kernel, the following vulnerability has been resolved:
scsi: qla2xxx: Avoid fcport pointer dereference
Klocwork reported warning of NULL pointer may be dereferenced. The routine exits when sa_ctl is NULL and fcport is allocated after the exit call thus causing NULL fcport pointer to dereference at the time of exit.
To avoid fcport pointer dereference, exit the routine when sa_ctl is NULL.
{
"osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/53xxx/CVE-2023-53603.json",
"cna_assigner": "Linux"
}[
{
"id": "CVE-2023-53603-4718c206",
"signature_version": "v1",
"digest": {
"threshold": 0.9,
"line_hashes": [
"244771960613427075889792430798404014195",
"277267924074886748356784406072419750979",
"101228146728256639535149879537149288418",
"305496337072047182656925772614238592993",
"128541685921489365901904635181294358891"
]
},
"deprecated": false,
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@477bc74ad1add644b606bff6ba1284943c42818a",
"signature_type": "Line",
"target": {
"file": "drivers/scsi/qla2xxx/qla_edif.c"
}
},
{
"id": "CVE-2023-53603-5b7f566b",
"signature_version": "v1",
"digest": {
"function_hash": "217271064880025440276859448726360389208",
"length": 1468.0
},
"deprecated": false,
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@4406fe8a96a946c7ea5724ee59625755a1d9c59d",
"signature_type": "Function",
"target": {
"file": "drivers/scsi/qla2xxx/qla_edif.c",
"function": "qla24xx_issue_sa_replace_iocb"
}
},
{
"id": "CVE-2023-53603-6dd4ef55",
"signature_version": "v1",
"digest": {
"threshold": 0.9,
"line_hashes": [
"244771960613427075889792430798404014195",
"277267924074886748356784406072419750979",
"101228146728256639535149879537149288418",
"305496337072047182656925772614238592993",
"128541685921489365901904635181294358891"
]
},
"deprecated": false,
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@6b504d06976fe4a61cc05dedc68b84fadb397f77",
"signature_type": "Line",
"target": {
"file": "drivers/scsi/qla2xxx/qla_edif.c"
}
},
{
"id": "CVE-2023-53603-968cc7d6",
"signature_version": "v1",
"digest": {
"function_hash": "217271064880025440276859448726360389208",
"length": 1468.0
},
"deprecated": false,
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@6b504d06976fe4a61cc05dedc68b84fadb397f77",
"signature_type": "Function",
"target": {
"file": "drivers/scsi/qla2xxx/qla_edif.c",
"function": "qla24xx_issue_sa_replace_iocb"
}
},
{
"id": "CVE-2023-53603-a63da5cc",
"signature_version": "v1",
"digest": {
"function_hash": "217271064880025440276859448726360389208",
"length": 1468.0
},
"deprecated": false,
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@7bbeff613ec0560fb2f6f8b405288f3f043adf64",
"signature_type": "Function",
"target": {
"file": "drivers/scsi/qla2xxx/qla_edif.c",
"function": "qla24xx_issue_sa_replace_iocb"
}
},
{
"id": "CVE-2023-53603-be979d5e",
"signature_version": "v1",
"digest": {
"threshold": 0.9,
"line_hashes": [
"244771960613427075889792430798404014195",
"277267924074886748356784406072419750979",
"101228146728256639535149879537149288418",
"305496337072047182656925772614238592993",
"128541685921489365901904635181294358891"
]
},
"deprecated": false,
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@7bbeff613ec0560fb2f6f8b405288f3f043adf64",
"signature_type": "Line",
"target": {
"file": "drivers/scsi/qla2xxx/qla_edif.c"
}
},
{
"id": "CVE-2023-53603-c747affc",
"signature_version": "v1",
"digest": {
"function_hash": "217271064880025440276859448726360389208",
"length": 1468.0
},
"deprecated": false,
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@477bc74ad1add644b606bff6ba1284943c42818a",
"signature_type": "Function",
"target": {
"file": "drivers/scsi/qla2xxx/qla_edif.c",
"function": "qla24xx_issue_sa_replace_iocb"
}
},
{
"id": "CVE-2023-53603-f35e9f7d",
"signature_version": "v1",
"digest": {
"threshold": 0.9,
"line_hashes": [
"244771960613427075889792430798404014195",
"277267924074886748356784406072419750979",
"101228146728256639535149879537149288418",
"305496337072047182656925772614238592993",
"128541685921489365901904635181294358891"
]
},
"deprecated": false,
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@4406fe8a96a946c7ea5724ee59625755a1d9c59d",
"signature_type": "Line",
"target": {
"file": "drivers/scsi/qla2xxx/qla_edif.c"
}
}
]
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-53603.json"