CVE-2023-54014: Linux

EPSS: 0.2% chance of exploitation in the next 30 days.

In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Check valid rport returned by fc_bsg_to_rport() Klocwork reported warning of rport maybe NULL and will be dereferenced. rport returned by call to fc_bsg_to_rport() could be NULL and dereferenced. Check valid rport returned by fc_bsg_to_rport().

Affected products

  • Linux Linux: from 4.10, before 4.14.322 (fixed in 4.14.322); from 4.15, before 4.19.291 (fixed in 4.19.291); from 4.20, before 5.4.251 (fixed in 5.4.251); from 5.5, before 5.10.188 (fixed in 5.10.188); from 5.11, before 5.15.121 (fixed in 5.15.121); from 5.16, before 6.1.40 (fixed in 6.1.40); …

Published 2025-12-24. Last modified 2026-06-17.