CVE Database
/

CVE-2023-52785

Back to search

CVE-2023-52785

Published: May 21, 2024

Modified: May 11, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: scsi: ufs: core: Fix racing issue between ufshcd_mcq_abort() and ISR If command timeout happens and cq complete IRQ is raised at the same time, ufshcd_mcq_abort clears lprb->cmd and a NULL pointer deref happens in the ISR. Error log: ufshcd_abort: Device abort task at tag 18 Unable to handle kernel NULL pointer dereference at virtual address 0000000000000108 pc : [0xffffffe27ef867ac] scsi_dma_unmap+0xc/0x44 lr : [0xffffffe27f1b898c] ufshcd_release_scsi_cmd+0x24/0x114

VendorProductVersions

Linux

Linux

affected
f1304d4420777f82a1d844c606db3d9eca841765 - < 8f15a7e3c054d960bbd1521110700450bbf798a1
affected
f1304d4420777f82a1d844c606db3d9eca841765 - < f84d461f33a6b27304d468d9cfb56c0cefdb4ee7
affected
f1304d4420777f82a1d844c606db3d9eca841765 - < 27900d7119c464b43cd9eac69c85884d17bae240

Linux

Linux

affected
6.5
unaffected
0 - < 6.5
unaffected
6.5.13 - <= 6.5.*
unaffected
6.6.3 - <= 6.6.*
unaffected
6.7 - <= *

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now