GHSA-qwp9-8pwv-6hg4HighCVSS 7.8

An issue was discovered in the Linux kernel through 5.11.3. Certain iSCSI data structures do not...

Published
May 24, 2022
Last Modified
July 30, 2026

🔗 CVE IDs covered (1)

📋 Description

An issue was discovered in the Linux kernel through 5.11.3. Certain iSCSI data structures do not have appropriate length constraints or checks, and can exceed the PAGE_SIZE value. An unprivileged user can send a Netlink message that is associated with iSCSI, and has a length up to the maximum length of a Netlink message.

🔗 References (12)