CVE-2023-53335

Source
https://cve.org/CVERecord?id=CVE-2023-53335
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-53335.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2023-53335
Downstream
Related
Published
2025-09-17T14:56:29.672Z
Modified
2026-04-11T12:46:45.157842Z
Severity
  • 5.5 (Medium) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H CVSS Calculator
Summary
RDMA/cxgb4: Fix potential null-ptr-deref in pass_establish()
Details

In the Linux kernel, the following vulnerability has been resolved:

RDMA/cxgb4: Fix potential null-ptr-deref in pass_establish()

If getepfrom_tid() fails to lookup non-NULL value for ep, ep is dereferenced later regardless of whether it is empty. This patch adds a simple sanity check to fix the issue.

Found by Linux Verification Center (linuxtesting.org) with SVACE.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/53xxx/CVE-2023-53335.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
944661dd97f4f257cd914fffec7eb80832ff9141
Fixed
9dca64042d855a24b0bd81ce242e5dc7e939f6eb
Fixed
2cfc00e974d75a3aa8155f2660f57d342e1f67ca
Fixed
9ddc77eefb2a567b705c3c86ab2ddabe43cadf1b
Fixed
283861a4c52c1ea4df3dd1b6fc75a50796ce3524

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-53335.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
4.7.0
Fixed
5.15.99
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.16
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.2.3

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-53335.json"