CVE-2023-7324

Source
https://nvd.nist.gov/vuln/detail/CVE-2023-7324
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-7324.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2023-7324
Downstream
Published
2025-10-29T13:46:14.184Z
Modified
2025-11-28T02:35:00.754308Z
Summary
scsi: ses: Fix possible addl_desc_ptr out-of-bounds accesses
Details

In the Linux kernel, the following vulnerability has been resolved:

scsi: ses: Fix possible addldescptr out-of-bounds accesses

Sanitize possible addldescptr out-of-bounds accesses in sesenclosuredata_process().

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/7xxx/CVE-2023-7324.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Fixed
af5114d824f3511a69d68beff49ca9a7c32d44e0
Fixed
a156a262c543fa5ff30bcb2fc6ad1a95cb4ab57a
Fixed
8e454aba72805241239caf8ba9b8e5a6be772b96
Fixed
2ecd344173a5663d523433819da0484cb268b186
Fixed
384aa697d8f2a28b5e962f5292cdfd2e528b5df7
Fixed
27067c672980b497cc34048b69b12820851ac6b9
Fixed
b91ef85a32fdba45fcbad87dd526d73d3b6d857d
Fixed
db95d4df71cb55506425b6e4a5f8d68e3a765b63

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.14.308
Type
ECOSYSTEM
Events
Introduced
4.15.0
Fixed
4.19.276
Type
ECOSYSTEM
Events
Introduced
4.20.0
Fixed
5.4.235
Type
ECOSYSTEM
Events
Introduced
5.5.0
Fixed
5.10.173
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.99
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.16
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.2.3