CVE-2023-53754NULL Pointer Dereference in Linux

Severity
5.5MEDIUM
No vector
EPSS
0.0%
top 85.68%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 8

Description

In the Linux kernel, the following vulnerability has been resolved: scsi: lpfc: Fix ioremap issues in lpfc_sli4_pci_mem_setup() When if_type equals zero and pci_resource_start(pdev, PCI_64BIT_BAR4) returns false, drbl_regs_memmap_p is not remapped. This passes a NULL pointer to iounmap(), which can trigger a WARN() on certain arches. When if_type equals six and pci_resource_start(pdev, PCI_64BIT_BAR4) returns true, drbl_regs_memmap_p may has been remapped and ctrl_regs_memmap_p is not remappe

Affected Packages4 packages

Linuxlinux/linux_kernel4.17.05.4.243+5
Debianlinux/linux_kernel< 5.10.191-1+3
CVEListV5linux/linux1351e69fc6db30e186295f1c9495d03cef6a01a274d90f92eafe8ccd12827228236a28a94eda6bcc+7
debiandebian/linux< linux 6.1.37-1 (bookworm)

🔴Vulnerability Details

3
OSV
scsi: lpfc: Fix ioremap issues in lpfc_sli4_pci_mem_setup()2025-12-08
GHSA
GHSA-48c4-xwvf-f6cx: In the Linux kernel, the following vulnerability has been resolved: scsi: lpfc: Fix ioremap issues in lpfc_sli4_pci_mem_setup() When if_type equals2025-12-08
OSV
CVE-2023-53754: In the Linux kernel, the following vulnerability has been resolved: scsi: lpfc: Fix ioremap issues in lpfc_sli4_pci_mem_setup() When if_type equals ze2025-12-08

📋Vendor Advisories

2
Red Hat
kernel: scsi: lpfc: Fix ioremap issues in lpfc_sli4_pci_mem_setup()2025-12-08
Debian
CVE-2023-53754: linux - In the Linux kernel, the following vulnerability has been resolved: scsi: lpfc:...2023