Linux kernel
cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*, +4 more
A vulnerability in the Linux kernel's SCSI SES driver has been addressed. The issue arose when the driver attempted to manage enclosures lacking components, which could lead to a system error. The driver will now correctly identify and skip such enclosures, preventing potential errors.
The vulnerability could cause a system error if the driver tried to manage an enclosure with no components.
The vulnerability can be reproduced by connecting a SCSI enclosure that has no components to a system running the affected Linux kernel version. The SCSI SES driver will attempt to manage the enclosure, leading to a system error.
Users can upgrade to the latest version of the Linux kernel where this issue has been fixed.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.