CVE-2022-21546

Updated: 2025-11-19 04:09:03.234346

Description:

In the Linux kernel, the following vulnerability has been resolved: scsi: target: Fix WRITE_SAME No Data Buffer crash In newer version of the SBC specs, we have a NDOB bit that indicates there is no data buffer that gets written out. If this bit is set using commands like "sg_write_same --ndob" we will crash in target_core_iblock/file's execute_write_same handlers when we go to access the se_cmd->t_data_sg because its NULL. This patch adds a check for the NDOB bit in the common WRITE SAME code because we don't support it. And, it adds a check for zero SG elements in each handler in case the initiator tries to send a normal WRITE SAME with no data buffer.


Links NIST CIRCL RHEL Ubuntu

Severity

Severity Score
CVSS Version 2.x 0.0
CVSS Version 3.x HIGH 7.8

Status

OS name Project name Version Score Severity Status Errata Last updated

Statement

CentOS 6 ELS kernel 2.6.32 7.8 HIGH Released CLSA-2026:1768669128 2026-01-28 13:06:41
CentOS 7 ELS kernel 3.10.0 7.8 HIGH Released CLSA-2025:1766617167 2026-01-12 18:12:59
CentOS 8.4 ELS kernel 4.18.0 7.8 HIGH Needs Triage 2026-01-17 01:47:30
CentOS 8.5 ELS kernel 4.18.0 7.8 HIGH In Testing 2026-02-02 07:44:56
Oracle Linux 6 ELS kernel 2.6.32 7.8 HIGH Released CLSA-2026:1769610819 2026-01-28 21:29:34
Oracle Linux 7 ELS kernel 3.10.0 7.8 HIGH Released CLSA-2025:1766599987 2025-12-25 14:33:47
RHEL 7 ELS kernel 3.10.0 7.8 HIGH Released CLSA-2025:1766600619 2025-12-25 14:33:28
Ubuntu 16.04 ELS linux-hwe 4.15.0 7.8 HIGH In Testing 2025-12-05 21:33:29
Ubuntu 16.04 ELS linux 4.4.0 7.8 HIGH In Testing 2025-12-05 21:29:05