CyberRota Analysis
AI-GeneratedThe vulnerability affects the Linux kernel's handling of FDP configuration descriptor sizes in NVMe devices, which could lead to unbounded iteration or buffer over-reads if descriptor sizes are improperly validated. This flaw poses a risk of potential memory corruption or denial of service, making it critical for organizations utilizing Linux systems with NVMe storage to prioritize patching. System administrators and security teams should assess their environments for exposure and apply the necessary updates to mitigate this risk.
Original NVD Description
In the Linux kernel, the following vulnerability has been resolved: nvme: validate FDP configuration descriptor sizes Validate descriptor sizes while walking the FDP configurations log so dsze == 0 or a descriptor past the log end cannot cause unbounded iteration or reads past the buffer.