Impact
This vulnerability occurs in the qla2xxx SCSI driver of the Linux kernel. A NULL pointer dereference happens when the code frees memory without first validating that the associated pointer is non‑null, leading to an oops and a system crash. The flaw does not give an attacker any direct control over kernel memory or allow arbitrary code execution; its most severe consequence is a denial‑of‑service through an unexpected reboot.
Affected Systems
All Linux kernel builds that include the qla2xxx module are potentially affected. The advisory does not list specific kernel versions, so any deployment running an unpatched qla2xxx driver before the fix could be vulnerable.
Risk and Exploitability
The CVSS score of 7.5 places this issue in the high‑severity range. With an EPSS of <1% and no entry in the CISA KEV catalog, active exploitation is considered unlikely at present. Based on the description, the attack likely requires the ability to send malformed SCSI commands to a QLogic device managed by this driver, which could be achieved locally or remotely depending on how the device is exposed. Successful exploitation would cause a kernel crash and a reboot, providing a denial‑of‑service capability but no privilege escalation or data disclosure.
OpenCVE Enrichment
Debian DLA
Debian DSA
Ubuntu USN