Back

HIGH

scsi: ses: Fix possible desc_ptr out-of-bounds accesses

Published Oct 7, 2025

Description

Sanitize possible desc_ptr out-of-bounds accesses in ses_enclosure_data_process().

Affected products

Remediation

Red Hat statement

The ses_enclosure_data_process() routine did not sufficiently validate descriptor pointer positions before dereferencing them, which could allow the parser to read beyond the buffer when a device or crafted input reports malformed enclosure pages. The fix adds strict pointer and length checks to avoid out-of-bounds accesses.

Red Hat mitigation

To mitigate this issue, prevent module ses from being loaded. Please see https://access.redhat.com/solutions/41278 for how to blacklist a kernel module to prevent it from loading automatically.

Metrics

References (13)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner Linux
Published Oct 7, 2025
Updated Aug 5, 2026
Reserved Oct 7, 2025
NVD
Status Modified
Modified Aug 4, 2026
Red Hat
Severity Moderate
Public date Oct 7, 2025