CVE-2023-54014

UnknownEPSS 0.18%

Last modified

CVE-2023-54014 is a vulnerability of currently unknown severity. In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Check valid rport returned by fc_bsg_to_rport() Klocwork reported warning of rport maybe NULL and will be dereferenced. rport returned by call to fc_bsg_to_rport() could be NULL and dereferenced. Check valid rport returned by fc_bsg_to_rport().. EPSS estimates a 0.18% chance of exploitation in the next 30 days.

Description

In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Check valid rport returned by fc_bsg_to_rport() Klocwork reported warning of rport maybe NULL and will be dereferenced. rport returned by call to fc_bsg_to_rport() could be NULL and dereferenced. Check valid rport returned by fc_bsg_to_rport().

Metrics

EPSS Probability
0.18%

7.5th percentile

Probability of exploitation in the next 30 days. Learn more

Affected Software

Source: CNA advisory (CVE.org). NVD analysis pending.

VendorProductVersions
LinuxLinux>= 75cc8cfc6e13d42d50c2bf4307d0a68c2a70f709, < f35bd94b4e11c41de90cd0fa72c9062e8196822f; >= 75cc8cfc6e13d42d50c2bf4307d0a68c2a70f709, < ccd3bc595bda67db5a347b9050c2df28f292d3fb; >= 75cc8cfc6e13d42d50c2bf4307d0a68c2a70f709, < 1b7e5bdf2be22ae8c61bdca5a5f96ec2746e9639; >= 75cc8cfc6e13d42d50c2bf4307d0a68c2a70f709, < 921d6844625527a92d1178262a633cc88a8e61bd; >= 75cc8cfc6e13d42d50c2bf4307d0a68c2a70f709, < 1ccd52b790a66b8b5f75c87eab8c3a37f941a2bf; >= 75cc8cfc6e13d42d50c2bf4307d0a68c2a70f709, < e466930717ef18c112585a39fc6174d8eb441df5; >= 75cc8cfc6e13d42d50c2bf4307d0a68c2a70f709, < ced5460eae772e847debbc0b65ef93aedab92d3f; >= 75cc8cfc6e13d42d50c2bf4307d0a68c2a70f709, < af73f23a27206ffb3c477cac75b5fcf03410556e
LinuxLinux4.10

References

Timeline

Published
Last Modified
Status
Deferred

Frequently Asked Questions

What is CVE-2023-54014?
In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Check valid rport returned by fc_bsg_to_rport() Klocwork reported warning of rport maybe NULL and will be dereferenced. rport returned by call to fc_bsg_to_rport() could be NULL and dereferenced. Check valid rport returned by fc_bsg_to_rport().
How severe is CVE-2023-54014?
Severity scoring for CVE-2023-54014 is pending analysis. The EPSS model estimates a 0.18% probability of exploitation in the next 30 days.
How do I fix CVE-2023-54014?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

How Strix Helps

Related CVEs from 2023

Are you affected by CVE-2023-54014?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST