CVE-2023-6535: Kernel: null pointer dereference in nvmet_tcp_execute_request
A flaw was found in the Linux kernel's NVMe driver. This issue may allow an unauthenticated malicious actor to send a set of crafted TCP packages when using NVMe over TCP, leading the NVMe driver to a NULL pointer dereference in the NVMe driver, causing kernel panic and a denial of service.
Other sources
Linux Kernel is vulnerable to a denial of service, caused by a NULL pointer dereference flaw in the NVMe driver. By sending specially crafted TCP packages when using NVMe over TCP, a remote authenticated attacker could exploit this vulnerability to cause kernel panic, and results in a denial of service condition.
— IBM
There's a flaw in Linux kernel's NVMe driver where an attacker can send crafted NVMe-oF/TCP packets leading to NULL point dereference in nvmettcpexecuterequest function. A successfuly attack can result in a remote Denial-of-service.
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2023-6535?
CVE-2023-6535 is classified as a critical vulnerability due to its potential to cause kernel panic and denial of service.
How do I fix CVE-2023-6535?
To mitigate CVE-2023-6535, update the Linux kernel to a version that includes patches such as 5.10.223-1 or later.
Which systems are affected by CVE-2023-6535?
CVE-2023-6535 affects various Linux kernel versions, especially those using NVMe over TCP, including Red Hat Enterprise Linux and IBM Security Verify Governance.
What is the impact of CVE-2023-6535?
The impact of CVE-2023-6535 allows an unauthenticated attacker to exploit the vulnerability, leading to system crashes and denial of service.
Is CVE-2023-6535 actively exploited in the wild?
As of now, there have been no confirmed reports of CVE-2023-6535 being actively exploited.