PT-2025-54008 · Unknown+3 · Qla2Xxx Driver+3

Published

2023-06-14

·

Updated

2026-03-24

·

CVE-2023-54179

CVSS v2.0

5.7

Medium

VectorAV:L/AC:L/Au:S/C:P/I:P/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description An issue exists in the qla2xxx driver within the Linux kernel where an array index may go out of bounds. Specifically, the array vha->host str of size 16 may be accessed with index values of 16 through 19. The reported solution is to use snprintf() instead of sprintf().
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Buffer Overflow

Weakness Enumeration

Related Identifiers

BDU:2026-02510
CVE-2023-54179
OESA-2026-1276
RHSA-2024:2394
RHSA-2024:3138
SUSE-SU-2026:0263-1
SUSE-SU-2026:0278-1
SUSE-SU-2026:0281-1
SUSE-SU-2026:0293-1
SUSE-SU-2026:0315-1
SUSE-SU-2026:0316-1
SUSE-SU-2026:0317-1
SUSE-SU-2026:0411-1
SUSE-SU-2026:0617-1
SUSE-SU-2026:20477-1
SUSE-SU-2026:20498-1
SUSE-SU-2026:20845-1
SUSE-SU-2026:20876-1

Affected Products

Centos
Linux Kernel
Red Hat
Qla2Xxx Driver