HomeDefectsLIN1021-6938
Fixed

LIN1021-6938 : Security Advisory - linux - CVE-2023-6536

Created: Dec 12, 2023    Updated: Jan 26, 2026
Resolved Date: Apr 1, 2025
Found In Version: 10.21.20.1
Fix Version: 10.21.20.22
Severity: Standard
Applicable for: Wind River Linux LTS 21
Component/s: Kernel

Description

A flaw was found in the Linux kernel's NVMe driver. This issue may allow an unauthenticated malicious actor to send a set of crafted TCP packages when using NVMe over TCP, leading the NVMe driver to a NULL pointer dereference in the NVMe driver, causing kernel panic and a denial of service.

https://nvd.nist.gov/vuln/detail/CVE-2023-6536