In the Linux kernel, the following vulnerability has been resolved:
scsi: lpfc: Prevent lpfcdebugfslockstat_write() buffer overflow
A static code analysis tool flagged the possibility of buffer overflow when using copyfromuser() for a debugfs entry.
Currently, it is possible that copyfromuser() copies more bytes than what would fit in the mybuf char array. Add a min() restriction check between sizeof(mybuf) - 1 and nbytes passed from the userspace buffer to protect against buffer overflow.
{
"osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/54xxx/CVE-2023-54102.json",
"cna_assigner": "Linux"
}