Skip to content

nvmet-tcp: Fix a kernel panic when host sends an invalid H2C PDU length

Maurizio Lombardi requested to merge mlombard/centos-stream-9:cve_nvmet into main

Merge Request Required Information

JIRA: https://issues.redhat.com/browse/RHEL-19153

JIRA: https://issues.redhat.com/browse/RHEL-19165

JIRA: https://issues.redhat.com/browse/RHEL-19159

CVE: CVE-2023-6356

CVE: CVE-2023-6536

CVE: CVE-2023-6535

Summary of Changes

Fix a kernel crash in nvmet-tcp due to malformed packets sent by the host

Signed-off-by: Maurizio Lombardi mlombard@redhat.com

Approved Development Ticket

All submissions to CentOS Stream must reference an approved ticket in Red Hat Jira. Please follow the CentOS Stream contribution documentation for how to file this ticket and have it approved.

Edited by Maurizio Lombardi

Merge request reports