drivers/scsi/bfa/bfa_core.c in the Linux kernel before 2...
Moderate severity
Unreviewed
Published
May 13, 2022
to the GitHub Advisory Database
•
Updated Feb 13, 2023
Description
Published by the National Vulnerability Database
Dec 29, 2010
Published to the GitHub Advisory Database
May 13, 2022
Last updated
Feb 13, 2023
drivers/scsi/bfa/bfa_core.c in the Linux kernel before 2.6.35 does not initialize a certain port data structure, which allows local users to cause a denial of service (system crash) via read operations on an fc_host statistics file.
References