In the Linux kernel, the following vulnerability has been resolved: nvme-tcp: fix UAF when detecting digest errors We should also bail from the io_work loop when we set rd_enabled to true, so we don't attempt to read data from the socket when the TCP stream is already out-of-sync or corrupted.
| Version | Score | Severity | Vector String |
|---|---|---|---|
| 3.1 | 6.2 | Medium | CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H |
| Product | Vendor | Version |
|---|---|---|
| Linux | Linux | 5.2.9 |
| Linux | Linux | 5.2.10 |
| Linux | Linux | 9.0.3.Final |
| Linux | Linux | 9.3.0.Alpha1 |