ZeroHour

CVE-2023-6535

CVSS 3.1
7.5 high
EPSS
2%p74
Published
()
Modified
Description

A flaw was found in the Linux kernel's NVMe driver. This issue may allow an unauthenticated malicious actor to send a set of crafted TCP packages when using NVMe over TCP, leading the NVMe driver to a NULL pointer dereference in the NVMe driver, causing kernel panic and a denial of service.

Vendors
linuxredhat
Products
linux kernel, codeready linux builder eus, codeready linux builder eus for power little endian eus, codeready linux builder for arm64 eus, codeready linux builder for ibm z systems eus, enterprise linux, enterprise linux eus, enterprise linux for arm 64 eus, enterprise linux for ibm z systems eus, enterprise linux for power little endian eus, enterprise linux for real time, enterprise linux for real time for nfv
Weakness
CWE-476
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.