CVE-2023-53675: scsi: ses: Fix possible desc_ptr out-of-bounds accesses
In the Linux kernel, the following vulnerability has been resolved:
scsi: ses: Fix possible descptr out-of-bounds accesses
Sanitize possible descptr out-of-bounds accesses in sesenclosuredataprocess().
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-53675?
The severity of CVE-2023-53675 is considered medium due to the potential for out-of-bounds memory access.
How do I fix CVE-2023-53675?
To fix CVE-2023-53675, update to the latest patched version of the Linux kernel that addresses this vulnerability.
What systems are affected by CVE-2023-53675?
CVE-2023-53675 affects various versions of the Linux kernel implemented in systems using the SCSI SES protocol.
What type of vulnerability is CVE-2023-53675?
CVE-2023-53675 is an out-of-bounds access vulnerability that can lead to memory corruption in the Linux kernel's SCSI subsystem.
Is there a workaround for CVE-2023-53675?
Currently, there are no known workarounds for CVE-2023-53675; the best practice is to apply the kernel updates.