cbcvebase.
CVE-2023-54108
published 2025-12-24

CVE-2023-54108: In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Fix DMA-API call trace on NVMe LS requests The following message and call…

PriorityP421low2.5
EPSS
0.19%
8.5th percentile
In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Fix DMA-API call trace on NVMe LS requests The following message and call trace was seen with debug kernels: DMA-API: qla2xxx 0000:41:00.0: device driver failed to check map error [device address=0x00000002a3ff38d8] [size=1024 bytes] [mapped as single] WARNING: CPU: 0 PID: 2930 at kernel/dma/debug.c:1017 check_unmap+0xf42/0x1990 Call Trace: debug_dma_unmap_page+0xc9/0x100 qla_nvme_ls_unmap+0x141/0x210 [qla2xxx] Remove DMA mapping from the driver altogether, as it is already done by FC layer. This prevents the warning.

Affected

24 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.20-1 (bookworm)linux 6.1.20-1 (bookworm)
linuxlinux
linuxlinux
linuxlinux
linuxlinux>= 0910a791a6d7fd331f231f48200e18babb519769 < e596253113b69b4018818260bd5da40c201bee73e596253113b69b4018818260bd5da40c201bee73
linuxlinux>= 2d087c7e55db420107c3ea97b228e067a7b488a1 < 3a564de3a299856f2cbd289649cea2e20d671a433a564de3a299856f2cbd289649cea2e20d671a43
linuxlinux>= 5.10.110 < 5.10.1735.10.173
linuxlinux>= 5.15.33 < 5.15.995.15.99
linuxlinux>= 5.16.19 < 5.175.17
linuxlinux>= 5.17.2 < 5.185.18
linuxlinux>= 5.4.189 < 5.4.2355.4.235
linuxlinux>= c85ab7d9e27a80e48d5b7d7fb2fe2b0fdb2de523 < 3ee4f1991c54c6707aa9df47e51c02ea25bb63e33ee4f1991c54c6707aa9df47e51c02ea25bb63e3
linuxlinux>= c85ab7d9e27a80e48d5b7d7fb2fe2b0fdb2de523 < ad6af23593594402c826eefdf43ae174e5f0f202ad6af23593594402c826eefdf43ae174e5f0f202
linuxlinux>= c85ab7d9e27a80e48d5b7d7fb2fe2b0fdb2de523 < c75e6aef5039830cce5d4cf764dd204522f89e6bc75e6aef5039830cce5d4cf764dd204522f89e6b
linuxlinux>= c9d6081a5f18286ad62afc1e9e06a90cfd626902 < 77302fb0e357da666d5249a6e91078feeef3dade77302fb0e357da666d5249a6e91078feeef3dade
linuxlinux_kernel>= 0 < 5.10.178-15.10.178-1
linuxlinux_kernel>= 0 < 6.1.20-16.1.20-1
linuxlinux_kernel>= 0 < 6.1.20-16.1.20-1
linuxlinux_kernel>= 0 < 6.1.20-16.1.20-1
linuxlinux_kernel>= 0 < 5.4.2355.4.235
linuxlinux_kernel>= 5.11.0 < 5.15.995.15.99
linuxlinux_kernel>= 5.16.0 < 6.1.166.1.16
linuxlinux_kernel>= 5.18.0 < 6.2.36.2.3
linuxlinux_kernel>= 5.5.0 < 5.10.1735.10.173
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.