cbcvebase.
CVE-2023-52809
published 2024-05-21

CVE-2023-52809: In the Linux kernel, the following vulnerability has been resolved: scsi: libfc: Fix potential NULL pointer dereference in fc_lport_ptp_setup()…

PriorityP418medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.25%
16.2th percentile
In the Linux kernel, the following vulnerability has been resolved: scsi: libfc: Fix potential NULL pointer dereference in fc_lport_ptp_setup() fc_lport_ptp_setup() did not check the return value of fc_rport_create() which can return NULL and would cause a NULL pointer dereference. Address this issue by checking return value of fc_rport_create() and log error message on fc_rport_create() failed.

Affected

25 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.64-1 (bookworm)linux 6.1.64-1 (bookworm)
linuxlinux
linuxlinux>= 42e9a92fe6a9095bd68a379aaec7ad2be0337f7a < 930f0aaba4820d6362de4e6ed569eaf444f1ea4e930f0aaba4820d6362de4e6ed569eaf444f1ea4e
linuxlinux>= 42e9a92fe6a9095bd68a379aaec7ad2be0337f7a < 77072ec41d6ab3718c3fc639bc149b8037caedfa77072ec41d6ab3718c3fc639bc149b8037caedfa
linuxlinux>= 42e9a92fe6a9095bd68a379aaec7ad2be0337f7a < b549acf999824d4f751ca57965700372f2f3ad00b549acf999824d4f751ca57965700372f2f3ad00
linuxlinux>= 42e9a92fe6a9095bd68a379aaec7ad2be0337f7a < bb83f79f90e92f46466adcfd4fd264a7ae0f0f01bb83f79f90e92f46466adcfd4fd264a7ae0f0f01
linuxlinux>= 42e9a92fe6a9095bd68a379aaec7ad2be0337f7a < 56d78b5495ebecbb9395101f3be177cd0a52450b56d78b5495ebecbb9395101f3be177cd0a52450b
linuxlinux>= 42e9a92fe6a9095bd68a379aaec7ad2be0337f7a < 442fd24d7b6b29e4a9cd9225afba4142d5f522ba442fd24d7b6b29e4a9cd9225afba4142d5f522ba
linuxlinux>= 42e9a92fe6a9095bd68a379aaec7ad2be0337f7a < f6fe7261b92b21109678747f36df9fdab1e30c34f6fe7261b92b21109678747f36df9fdab1e30c34
linuxlinux>= 42e9a92fe6a9095bd68a379aaec7ad2be0337f7a < 6b9ecf4e1032e645873933e5b43cbb84cac191066b9ecf4e1032e645873933e5b43cbb84cac19106
linuxlinux>= 42e9a92fe6a9095bd68a379aaec7ad2be0337f7a < 4df105f0ce9f6f30cda4e99f577150d23f0c9c5f4df105f0ce9f6f30cda4e99f577150d23f0c9c5f
linuxlinux_kernel< 4.14.3314.14.331
linuxlinux_kernel>= 0 < 5.10.205-15.10.205-1
linuxlinux_kernel>= 0 < 6.1.64-16.1.64-1
linuxlinux_kernel>= 0 < 6.6.8-16.6.8-1
linuxlinux_kernel>= 0 < 6.6.8-16.6.8-1
linuxlinux_kernel>= 0 < 4.4.0-259.2934.4.0-259.293
linuxlinux_kernel>= 0 < 4.15.0-229.2414.15.0-229.241
linuxlinux_kernel>= 4.15 < 4.19.3004.19.300
linuxlinux_kernel>= 4.20 < 5.4.2625.4.262
linuxlinux_kernel>= 5.11 < 5.15.1405.15.140
linuxlinux_kernel>= 5.16 < 6.1.646.1.64
linuxlinux_kernel>= 5.5 < 5.10.2025.10.202
linuxlinux_kernel>= 6.2 < 6.5.136.5.13
linuxlinux_kernel>= 6.6 < 6.6.36.6.3

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
vendor_ubuntu5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.