CVE-2023-53464

Source
https://cve.org/CVERecord?id=CVE-2023-53464
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-53464.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2023-53464
Downstream
Related
Published
2025-10-01T11:42:35.186Z
Modified
2026-04-11T12:46:47.480051Z
Summary
scsi: iscsi_tcp: Check that sock is valid before iscsi_set_param()
Details

In the Linux kernel, the following vulnerability has been resolved:

scsi: iscsitcp: Check that sock is valid before iscsiset_param()

The validity of sock should be checked before assignment to avoid incorrect values. Commit 57569c37f0ad ("scsi: iscsi: iscsitcp: Fix null-ptr-deref while calling getpeername()") introduced this change which may lead to inconsistent values of tcpswconn->sendpage and conn->datadgsten.

Fix the issue by moving the position of the assignment.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/53xxx/CVE-2023-53464.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
884a788f065578bb640382279a83d1df433b13e6
Fixed
499757ad3332e2527254f9ab68dec1da087b1d96
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
a26b0658751bb0a3b28386fca715333b104d32a2
Fixed
5e5c5f472972c4bc9430adc08b36763a0fa5b9f7
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
57569c37f0add1b6489e1a1563c71519daf732cf
Fixed
6e06a68fbbfcd8576eee8f7139fa2b13c9b72e91
Fixed
b287e21e73ec23f3788fbe40037c42dbe6e9a9a9
Fixed
48b19b79cfa37b1e50da3b5a8af529f994c08901
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Last affected
897dbbc57d71e8a34ec1af8e573a142de457da38
Last affected
0a0b861fce2657ba08ec356a74346b37ca4b2008

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-53464.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.10.178
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.107
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.24
Type
ECOSYSTEM
Events
Introduced
6.1.0
Fixed
6.2.11

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-53464.json"