scsi: lpfc: Fix ioremap issues in lpfc_sli4_pci_mem_setup()
Published Dec 8, 2025
5.5
MEDIUMCVSS 3.1
EPSS 0.19%
Description
When if_type equals zero and pci_resource_start(pdev, PCI_64BIT_BAR4) returns false, drbl_regs_memmap_p is not remapped. This passes a NULL pointer to iounmap(), which can trigger a WARN() on certain arches.
When if_type equals six and pci_resource_start(pdev, PCI_64BIT_BAR4) returns true, drbl_regs_memmap_p may has been remapped and ctrl_regs_memmap_p is not remapped. This is a resource leak and passes a NULL pointer to iounmap().
To fix these issues, we need to add null checks before iounmap(), and change some goto labels.
Affected products
-
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version
-
- Version 4.17StatusaffectedConstraints-
- Version 0StatusunaffectedConstraints<4.17
- Version 5.10.180StatusunaffectedConstraints<=5.10.*
- Version 5.15.111StatusunaffectedConstraints<=5.15.*
- Version 5.4.243StatusunaffectedConstraints<=5.4.*
- Version 6.1.28StatusunaffectedConstraints<=6.1.*
- Version 6.2.15StatusunaffectedConstraints<=6.2.*
- Version 6.3.2StatusunaffectedConstraints<=6.3.*
- Version 6.4StatusunaffectedConstraints<=*
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | ||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| Linux | Linux | unaffected |
| ||||||||||||||||||||||||||||||
| Linux | Linux | affected |
|
No data.
No data.
Red Hat Enterprise Linux 10
kernel
Not affected
Red Hat Enterprise Linux 6
kernel
Out of support scope
Red Hat Enterprise Linux 7
kernel
Fix deferred
Red Hat Enterprise Linux 7
kernel-rt
Fix deferred
Red Hat Enterprise Linux 8
kernel
Fix deferred
Red Hat Enterprise Linux 8
kernel-rt
Fix deferred
Red Hat Enterprise Linux 9
kernel
Fix deferred
Red Hat Enterprise Linux 9
kernel-rt
Fix deferred
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 10 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 6 | kernel | Out of support scope | n/a |
| Red Hat Enterprise Linux 7 | kernel | Fix deferred | n/a |
| Red Hat Enterprise Linux 7 | kernel-rt | Fix deferred | n/a |
| Red Hat Enterprise Linux 8 | kernel | Fix deferred | n/a |
| Red Hat Enterprise Linux 8 | kernel-rt | Fix deferred | n/a |
| Red Hat Enterprise Linux 9 | kernel | Fix deferred | n/a |
| Red Hat Enterprise Linux 9 | kernel-rt | Fix deferred | n/a |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
References (13)
- https://access.redhat.com/security/cve/CVE-2023-53754 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2419880 Issue Tracking
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2023-60074 Advisory
- https://git.kernel.org/stable/c/631d0fab143bef85ea0813596f1dda36e2b9724c
- https://git.kernel.org/stable/c/74d90f92eafe8ccd12827228236a28a94eda6bcc
- https://git.kernel.org/stable/c/7e5a54d1f00725a739dcd20f616d82eff4f764bd
- https://git.kernel.org/stable/c/91a0c0c1413239d0548b5aac4c82f38f6d53a91e
- https://git.kernel.org/stable/c/bab8dc38b1a0a12bc064fc064269033bdcf5b88e
- https://git.kernel.org/stable/c/e6f1ef4a53856ed000b0f7265d7e16dcb00f4243
- https://git.kernel.org/stable/c/fd8c83d8375b9dac1949f2753485a5c055ebfad0
- https://lore.kernel.org/linux-cve-announce/2025120843-CVE-2023-53754-c601@gregkh/T
- https://nvd.nist.gov/vuln/detail/CVE-2023-53754
- https://www.cve.org/CVERecord?id=CVE-2023-53754
Change history (0)
No recorded changes yet.